URLhaus Database

You are currently viewing the URLhaus database entry for http://66.63.187.69/wget.sh which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3425049
URL: http://66.63.187.69/wget.sh
URL Status:Offline
Host: 66.63.187.69
Date added:2025-02-03 04:01:04 UTC
Last online:2025-02-25 06:XX:XX UTC
Threat:Malware download Malware download
Reporter: cesnet_certs
Abuse complaint sent (?): Yes (2025-02-03 04:02:05 UTC to abuse{at}virtualine[dot]org)
Takedown time:22 days, 2 hours, 15 minutes Bad (down since 2025-02-25 06:17:59 UTC)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-02-21n/ash 911417241d21135607573b959160706e119a8dc2289eefbde72f1ea6e157a905Virustotal results 27.12%
2025-02-20n/ash 4e7287a10f0d73d47db5f76e56b4e12aa99dc9c5a42f3da86682f91b00ff23efn/a
2025-02-19n/ash bcd48bb0eb855196c149941683502af1fcb0af9ce919740ffc6051cf41762224n/a
2025-02-12n/ash 7a0d29462ec9548247fb10a6e2ccf36bcaec52468002ab87a4685cb371963a31n/aMirai
2025-02-11n/ash 7386a6be0efa8c9df0a33d3838da49fe43a139dd7d7c66ad4b18cf0592bb86d7n/aMirai
2025-02-03n/ash 75d031e8faaf3aa0e9cafd5ef0fd7de1a2a80aaa245a9e92bae6433a17f48385Virustotal results 24.59%Mirai