URLhaus Database

You are currently viewing the URLhaus database entry for http://89.213.174.225/00101010101001/morte.arm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3622065
URL: http://89.213.174.225/00101010101001/morte.arm7
URL Status:Offline
Host: 89.213.174.225
Date added:2025-09-11 19:40:16 UTC
Last online:2025-10-12 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-09-11 19:41:09 UTC to report{at}abuseradar[dot]com)
Takedown time:1 month, 0 days, 22 hours, 7 minutes Bad (down since 2025-10-12 17:48:32 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-01n/aelf b4618e7cdbfc97c1502c84aa95db42545803c26f8101865c11737aa9f7e109d9Virustotal results 50.00%Mirai
2025-09-27n/aelf fdd33f4063f5f1417373c83ae723bc5aed2c6808ace79156b7d0d2c975e76437n/aMirai
2025-09-25n/aelf 080697ddd9ab71acfd9b736168a0ecabda7cb3a1c86f36a2660943b67249923cVirustotal results 42.19%Mirai
2025-09-24n/aelf a14940b39b8d32aedfd5d2d2c044d58d332e74152e207ccfefa12859e61ec07dn/aMirai
2025-09-12n/aelf e06a55cecc5f992d3bacf782ec09fe1861e1ec2032fd53e96afe1f6bfdc410e7Virustotal results 34.92%Mirai
2025-09-11n/aelf 9c7aa9c72bd72a5f021d1d8895381124368777c862b6201e400d4431cc9273c8Virustotal results 30.91%Mirai
2025-09-11n/aelf 19e4697d566f07d55904a3b60e6133081d7526e14f1409310e27522eafd1a457Virustotal results 54.69%Mirai