URLhaus Database

You are currently viewing the URLhaus database entry for http://85.217.144.143/files/Min1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2681793
URL: http://85.217.144.143/files/Min1.exe
URL Status:Offline
Host: 85.217.144.143
Date added:2023-07-13 08:16:06 UTC
Last online:2023-10-26 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-07-13 08:17:08 UTC to abuse{at}delis[dot]one,abuse{at}des[dot]capital)
Takedown time:3 months, 15 days, 8 hours, 37 minutes Bad (down since 2023-10-26 16:55:07 UTC)
Tags:64 CoinMiner exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-09-13n/aexe fdbb6e0a160bc94da37c53e26298f29cce2b834f1e24a8ad3dd3f8f176823fc2n/aCoinMiner
2023-07-24n/aexe cff37ce90ef9a1056c42c16d39c6e5f080a73ce178425ef93222316523d30fd8n/a
2023-07-21n/aexe 59e6002b543a64a3032f1dc8e9c4d1d757c1e929c67c0ba774f673069e581aabn/a 
2023-07-13n/aexe d904a2ebb1ba6f63f4a15ccc9d9583f184ea3014270e3158402de6692d2ba247Virustotal results 41.43%CoinMiner