URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.69.95/00101010101001/morte.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3579398
URL: http://196.251.69.95/00101010101001/morte.ppc
URL Status:Offline
Host: 196.251.69.95
Date added:2025-07-09 06:30:34 UTC
Last online:2025-07-18 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-07-09 11:08:11 UTC to abuse{at}cheapy[dot]host)
Takedown time:9 days, 1 hours, 43 minutes Bad (down since 2025-07-18 12:52:09 UTC)
Tags:CoinMiner elf mirai link opendir ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-16morte.ppcelf d9787c1edf201fbf158ab62554ea6369387e002551a07f97f50629ec6bd706e4Virustotal results 35.94%Mirai
2025-07-14morte.ppcelf 260e23795c0f6ebb4b5a555b31b4e3cf1eaa0b4193f0968590c50b0d10133254n/aMirai
2025-07-13morte.ppcelf 5131854b110bff09e3ec25c6c45d26815c70ca5cc78d6786f1485a1a2ab078d9n/aMirai
2025-07-12morte.ppcelf 7554ead15a614ebaddf3e64638f007c3700d8ef51df6ebf22b1c0ffd96dd2aacVirustotal results 33.33%Mirai
2025-07-12morte.ppcelf 2c00bc2c15db7f3c85e83c333395da0d3e9dafab570f3e42caac70c93adda571Virustotal results 42.19%Mirai
2025-07-11morte.ppcelf 53c15c71fea5cf51c38d5ff443e5b21c6d6ddda742d732c2c6ffcbe8d1236670Virustotal results 33.33%CoinMiner
2025-07-09morte.ppcelf 57a3ff1e553f5b6a4be6b7f42ff5e6da61b19110aca6ab9cd8fe46deab0f0bc9Virustotal results 42.19%Mirai