URLhaus Database

You are currently viewing the URLhaus database entry for http://vipcncnetwork.com/bins/morte.arm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3586686
URL: http://vipcncnetwork.com/bins/morte.arm7
URL Status:Offline
Host: vipcncnetwork.com
Date added:2025-07-21 06:30:15 UTC
Last online:2025-09-11 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Phishing domain
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-09-10 08:31:10 UTC to abuse{at}nybula[dot]com)
Takedown time:1 month, 29 days, 14 hours, 32 minutes Bad (down since 2025-09-18 21:03:48 UTC)
Tags:botnetdoman mirai link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-10n/aelf 24b000a8b8a924f968ccaf56b46292435d34084e0df4818ff1a4691a8ffb20f5Virustotal results 23.44%Mirai
2025-09-04n/aelf 5d2a37faed0e40467720471418551229af80fa0826b17aceac890f84c412239dVirustotal results 23.81%Mirai
2025-09-04n/aelf 3a072928da5ee04b784d8cf6e94042f1be401ecd06849635fba7bdf8543aebb1Virustotal results 23.44%Mirai
2025-08-11n/aelf 5b4f9a2dad271887e3298e1f44659a080f05f78b0bf6f5c00f12c0201f87f1d2Virustotal results 35.94%Mirai
2025-08-02n/aelf d91ec037d4a3bd3da8068121fd9d0447dd5eb7549051e7122b5d217cdb46af81n/aMirai
2025-07-21n/aelf 00969384d60395745426767373265dcc7aca5888936df57b2deafaefe780b9e4Virustotal results 25.00%Mirai
2025-07-21n/aelf f668ad9e7208fb93503504745e844534c2f1cd03bb8be6580ceb107b2f3e5c1fVirustotal results 59.38%Mirai