URLhaus Database

You are currently viewing the URLhaus database entry for http://157.20.32.209/bins/morte.i686 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3632053
URL: http://157.20.32.209/bins/morte.i686
URL Status:Offline
Host: 157.20.32.209
Date added:2025-09-25 18:11:20 UTC
Last online:2025-10-20 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-09-25 18:12:13 UTC to abuse{at}intercloud-digital[dot]com)
Takedown time:25 days, 4 hours, 8 minutes Bad (down since 2025-10-20 22:21:02 UTC)
Tags:mirai link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-06n/aelf a1617a2f4c04b81e7d8fa32fd63a09ed977cd7607b24b76055b36fdea3112c89n/aMirai
2025-10-03n/aelf 43a8e9629a653c70fce05d4e8c0886f02081f122690b71c6a8712db274096a7aVirustotal results 23.08%Mirai
2025-09-25n/aelf 5748f0cc5c96c470edafe029ff3e95e817e05b762d8fe51fbce19920838a38daVirustotal results 24.62%Mirai