URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.69.241/00101010101001/morte.arc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3581252
URL: http://196.251.69.241/00101010101001/morte.arc
URL Status:Offline
Host: 196.251.69.241
Date added:2025-07-11 06:52:28 UTC
Last online:2025-07-23 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-07-11 06:53:19 UTC to abuse{at}cheapy[dot]host)
Takedown time:12 days, 9 hours, 33 minutes Bad (down since 2025-07-23 16:27:17 UTC)
Tags:mirai link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-19morte.arcelf c378185b0f76947eb0183861f4d01ef7df4964a68640d7280ca312ee4280868eVirustotal results 18.75%Mirai
2025-07-15morte.arcelf ed67075b604a4e4ef9da5e3d8c5d65805c943c6912cd09ffaff7b9545c9df571Virustotal results 12.50%Mirai
2025-07-14morte.arcelf 85d5ffa97106b07d85c9b1a74a8d1249225a40741d81c7f8af64798bb2473723Virustotal results 14.29%Mirai
2025-07-13morte.arcelf 4c030f9b900f3f7b42d67e46591bd385e1a5a86e98458593ca3d685246b4340bVirustotal results 14.06%Mirai
2025-07-12morte.arcelf 7f691f7554c5e04552cb6dcbb1f67b112025a8384e10358f51d12c15c8aadeafn/aMirai
2025-07-12morte.arcelf d090896b84e6932bca00a31c4c62d03dd4799986b1126a76ad629c66616c4db4Virustotal results 10.00%Mirai
2025-07-12morte.arcelf a2ff9ab030bc9695d2ad84fc95a7a44d2d489da881810407ac30f3c1597481d4Virustotal results 12.50%Mirai
2025-07-11morte.arcelf 0726645c9e8e9dc5c0e9faf99c45e3895dd0d24157f481f76c18cf0c669d2fdbn/aMirai
2025-07-11morte.arcelf da09c0a15749767ff124d606e6f2a24f11841c02cca3f2f2a3aa66172f0b3afcn/aMirai