URLhaus Database

You are currently viewing the URLhaus database entry for http://195.177.95.149/aarch64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3423898
URL: http://195.177.95.149/aarch64
URL Status:Offline
Host: 195.177.95.149
Date added:2025-02-02 06:09:08 UTC
Last online:2025-02-06 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-02-02 06:10:05 UTC to abuse{at}pitline[dot]net,abusep{at}kharkiv[dot]com)
Takedown time:4 days, 4 hours, 4 minutes Bad (down since 2025-02-06 10:14:47 UTC)
Tags:CoinMiner elf

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-02-06n/aelf 43bd2700c307495b14ff7f97ec76c48dc91b9e089a652eeb4e3aa04318413827Virustotal results 9.68%CoinMiner
2025-02-05n/aelf 12cf739327e89e28b1546517cc7fb6aa7575c84940b429a272edd6f4dd4ee7f8n/aCoinMiner
2025-02-02n/aelf f24f5262c2c1931cce3a4cab779c150e77647c2e35f0f5ce5d7980f4f1f05bdcn/aCoinMiner
2025-02-02n/aelf 4239acfab1693548b7f5b663e16fdac218eb1dd2714d6d16eba21a8fe81e57aaVirustotal results 11.29%CoinMiner