URLhaus Database

You are currently viewing the URLhaus database entry for http://uraniumc2.ddns.net/00101010101001/morte.arc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3630223
URL: http://uraniumc2.ddns.net/00101010101001/morte.arc
URL Status:Offline
Host: uraniumc2.ddns.net
Date added:2025-09-23 09:14:23 UTC
Last online:2025-10-18 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Abused domain (phishing)
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-10-12 16:57:12 UTC to report{at}abuseradar[dot]com)
Takedown time:1 month, 24 days, 18 hours, 18 minutes Bad (down since 2025-11-17 03:33:48 UTC)
Tags:botnetdomain elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-21morte.arcelf 3f295a09147cd004daf02131836f17c63138f57cff206bbfb5267332742b0d60n/aMirai
2025-10-12morte.arcelf 57d48052b8129deb07d2375bbbbc6470ad39a58e7a244b5e0a3622c807fe059bn/aMirai
2025-10-07morte.arcelf 7d21c6a95be4bd3d9bdb864db161fee339004977c2515e6eb0d9c88b2de0e69dVirustotal results 62.50%Mirai
2025-10-01morte.arcelf 6bac36a9da6baf62b802eb49e4be1b916ef48359ea88afa524ce06932a663137Virustotal results 48.44%Mirai
2025-09-25morte.arcelf e14148ef50afaf90475f6a13323b0a1547c747c45895b0d1c6ecbdfe773324f9Virustotal results 53.12%Mirai
2025-09-23morte.arcelf fe435e9a106bc2e35e64698fde5ea25f7be61b5cc9e9b5cd343e59f71d6d5b51Virustotal results 54.69%Mirai