URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.69.95/00101010101001/morte.x86_64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3579385
URL: http://196.251.69.95/00101010101001/morte.x86_64
URL Status:Offline
Host: 196.251.69.95
Date added:2025-07-09 06:29:35 UTC
Last online:2025-07-18 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-07-09 11:29:11 UTC to abuse{at}cheapy[dot]host)
Takedown time:9 days, 6 hours, 56 minutes Bad (down since 2025-07-18 18:25:41 UTC)
Tags:elf mirai link opendir ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-15n/aelf 85be94ab11a8e87c5645a30393b98307a4e784ff634402ec5aeb59d8644b558bVirustotal results 16.92%Mirai
2025-07-14n/aelf 5452e699ba4955e98d57b31672cd964f07385346f27294573c6801ba900deed1Virustotal results 16.92%Mirai
2025-07-13n/aelf 24d8b36ff9185698f93851f381d1fcf505c2323c3d7199ca09349ad5d4db2c1cVirustotal results 26.56%Mirai
2025-07-12n/aelf 7c0535f78ad1bf1c49d9a77a60c56e0b9d3fa02802b88dda9ca591520cfa6a45Virustotal results 18.46%Mirai
2025-07-12n/aelf 3a5130ce7a20900271c43e92cc65efe8d0b2f633a32cb0ac7a40d4f62321f0c4Virustotal results 18.46%Mirai
2025-07-09n/aelf 66ad9f358954dfe56d5306ad8748a57b6a52b9b7fb4a33471619c68eae7dc882Virustotal results 21.54%Mirai