URLhaus Database

You are currently viewing the URLhaus database entry for http://89.213.174.225/00101010101001/morte.arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3622062
URL: http://89.213.174.225/00101010101001/morte.arm6
URL Status:Offline
Host: 89.213.174.225
Date added:2025-09-11 19:40:16 UTC
Last online:2025-10-12 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-09-11 19:41:09 UTC to report{at}abuseradar[dot]com)
Takedown time:1 month, 0 days, 21 hours, 5 minutes Bad (down since 2025-10-12 16:46:38 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-06n/aelf 51a95c7fa8678e36792e75114dcb9a8a340b51c2a0c34e2061bf3eeaa2f2e2ddn/aMirai
2025-10-01n/aelf a2a63b86e0cc62bb6743c08c0d8ae202149bc9c47a531121d715134b6494525dVirustotal results 51.56%Mirai
2025-09-27n/aelf 88eb36ccd566dd3b4b03d9cedcbb8a2a50adafa4678a356f6bd8e4efb54da6c9n/aMirai
2025-09-25n/aelf 6cb58686e4a5196264c6d7b8c3f3cd5c8b78388cb7dcb0b79f0ad56de2e8ec14Virustotal results 42.19%Mirai
2025-09-24n/aelf b6e2d50452ba861974e3c242b12158a9d59ef4642dde5f24b31d44af98644500n/aMirai
2025-09-12n/aelf bada654d7c01ac842760a066d6cdf91dff79fe103da56d40778c627d3e96ebdaVirustotal results 36.51%Mirai
2025-09-12n/aelf 204600611dc923d9988b93efaa1811f63ce21caf0f558b377053621c9153dc86Virustotal results 36.51%Mirai
2025-09-11n/aelf 66f8fa705d4bbbe024c25f9ecf236bdde7ac2627bdaaa2ed332995d0657b0423Virustotal results 54.69%Mirai