URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.87.155/00101010101001/morte.arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3697942
URL: http://196.251.87.155/00101010101001/morte.arm6
URL Status:Offline
Host: 196.251.87.155
Date added:2025-11-06 08:49:26 UTC
Last online:2025-11-12 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2025-11-07 05:49:12 UTC to abuse{at}cheapy[dot]host)
Takedown time:5 days, 6 hours, 23 minutes Bad (down since 2025-11-12 12:12:46 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-11-11n/aelf e0bf86191882649a3b163925144da7b9cdc8fbf359e20924f96807cae1e4a5deVirustotal results 40.00%Mirai
2025-11-10n/aelf 8432d6a58da98950f1a8384a17486bef478f7fd75e76b277b1982a641094428fVirustotal results 38.10%Mirai
2025-11-09n/aelf 4192261d6b9c7ebbebea2c16d7b9e751f99fdf6fadec2927e8e27ff2c98b18aeVirustotal results 38.46%Mirai
2025-11-09n/aelf 0edcbf7bb6b4b62b3639853627fae1129c58989df01702fe1bede75346cec8f8Virustotal results 35.48%Mirai
2025-11-07n/aelf 4a46d888f109367df04fe843ff8c76a5bf46499f2a0e8aeaa080ad3e7f37a3f7n/aMirai
2025-11-07n/aelf 918bdb2d980ff51b27dcff6a456f33d4a356effadfeedda4072e68de9d57948dVirustotal results 35.94%Mirai
2025-11-07n/aelf b434ed5e9f29f5913ae127cd126e1231ddc8b319f28280f17af6cebcab75d048Virustotal results 37.50%Mirai