URLhaus Database

You are currently viewing the URLhaus database entry for http://41.216.189.110/00101010101001/morte.m68k which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3704798
URL: http://41.216.189.110/00101010101001/morte.m68k
URL Status:flame Online (spreading malware for 5 days, 6 hours, 9 minutes)
Host: 41.216.189.110
Date added:2025-11-13 22:38:13 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-11-13 22:39:13 UTC to abusepoc{at}afrinic[dot]net)
Tags:elf geofenced m68k mirai link opendir ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-11-18n/aelf ceba64aafe8d83bf0ea695c0290fd23e591b6afb660962ef4fd7ec27e4675610Virustotal results 57.81%Mirai
2025-11-17n/aelf f8a2f0bbc7a8946c516ef5474a178a323f1e8802c6cc9452a4fb589f1d542011Virustotal results 55.00%Mirai
2025-11-15n/aelf bb719d6a4197953f3bf91eff21abb3692df553e35cf0c78a87ca25834731b6ddVirustotal results 58.46%Mirai
2025-11-15n/aelf 1e3419d376c68622116d424b5046a6036f7612f37962e4e8a43ca6769ddcd991n/aMirai
2025-11-15n/aelf b2a83234ec9a15c605299e5dbbe73d0c4d7c19ee4c0e98874a409e5a913c6076n/aMirai
2025-11-13n/aelf c1d986c9c265127323bbf74e64f17520ac71056bfe4bf70f200e597033f19b14Virustotal results 57.81%Mirai