URLhaus Database

You are currently viewing the URLhaus database entry for http://66.63.187.193/arm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3568522
URL: http://66.63.187.193/arm7
URL Status:Offline
Host: 66.63.187.193
Date added:2025-06-20 08:07:06 UTC
Last online:2025-08-29 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-06-20 08:08:09 UTC to abuse{at}virtualine[dot]org)
Takedown time:2 months, 9 days, 17 hours, 50 minutes Bad (down since 2025-08-29 01:58:22 UTC)
Tags:CoinMiner elf ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-07n/aelf 229496b55d0668a40fe3d969ba4e942dc2c2fd7452b3d6f79c6beb0db631dc12Virustotal results 12.50%
2025-07-27n/aelf a5f837cd3b474a3ba5c81f4e9ae86888938b9dd6b9cf802e3e019d30de1df49dVirustotal results 9.38%CoinMiner
2025-07-20n/aelf c577132e0175fc3d6ed6fb880b0ddae6b60266db1f19d3b5974237d867ff7484Virustotal results 9.38%CoinMiner
2025-07-15n/aelf 9557bc559f728571b23040b453b896c359b4b914b9aa87db61178663669e1e9dn/aCoinMiner
2025-07-14n/aelf f8bbe4d65cb09dc3158a62926b1fda06549770ba1063accf12ed43f97c1ec4c7Virustotal results 9.38%CoinMiner
2025-06-28n/aelf 0d58ee0cd46d5908f31ba415f2e006c1bb0215b0ecdc27dd2b3afa74799e17bdVirustotal results 10.94%CoinMiner
2025-06-27n/aelf 5d690b9f7f6ae3af20b4a93729ecdc0300d22f00d459b64aa398cf68bfbae196Virustotal results 9.38%CoinMiner
2025-06-24n/aelf cead1673cdd1346972ed200dfc6b26d3074c96f55f243cd58476417a12192078Virustotal results 9.38%CoinMiner
2025-06-20n/aelf 2ef6bb55a79d81fbda6d574456a8c187f610c5ae2ddca38e32cf7cc50912b0bfVirustotal results 54.69%CoinMiner