URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.69.241/00101010101001/morte.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3581174
URL: http://196.251.69.241/00101010101001/morte.ppc
URL Status:Offline
Host: 196.251.69.241
Date added:2025-07-11 06:52:17 UTC
Last online:2025-07-23 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-07-11 06:53:18 UTC to abuse{at}cheapy[dot]host)
Takedown time:12 days, 10 hours, 49 minutes Bad (down since 2025-07-23 17:43:00 UTC)
Tags:CoinMiner mirai link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-19morte.ppcelf 03e95dd682d96c01e1c6e93ed45531c38b71e644b837a71044146d7abce4abafVirustotal results 46.88%Mirai
2025-07-15morte.ppcelf d9787c1edf201fbf158ab62554ea6369387e002551a07f97f50629ec6bd706e4Virustotal results 35.94%Mirai
2025-07-14morte.ppcelf 260e23795c0f6ebb4b5a555b31b4e3cf1eaa0b4193f0968590c50b0d10133254n/aMirai
2025-07-13morte.ppcelf 5131854b110bff09e3ec25c6c45d26815c70ca5cc78d6786f1485a1a2ab078d9Virustotal results 43.75%Mirai
2025-07-13morte.ppcelf 6fe6c2b21e3f8cd97546bee4b13c2f5cd292c4dc2ed6c8f63be5b75b629e0f25Virustotal results 31.15%Mirai
2025-07-13morte.ppcelf 23e06fd9bf99517939d60d6d921c57d46d43c2cc61fe2231928184bca0188736Virustotal results 31.25%Mirai
2025-07-12morte.ppcelf 7554ead15a614ebaddf3e64638f007c3700d8ef51df6ebf22b1c0ffd96dd2aacVirustotal results 33.33%Mirai
2025-07-12morte.ppcelf 2c00bc2c15db7f3c85e83c333395da0d3e9dafab570f3e42caac70c93adda571Virustotal results 42.19%Mirai
2025-07-11morte.ppcelf 53c15c71fea5cf51c38d5ff443e5b21c6d6ddda742d732c2c6ffcbe8d1236670n/aCoinMiner