URLhaus Database

You are currently viewing the URLhaus database entry for http://87.249.142.126:60800/info.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3649685
URL: http://87.249.142.126:60800/info.zip
URL Status:Offline
Host: 87.249.142.126
Date added:2025-10-03 19:34:05 UTC
Last online:2026-06-09 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: Riordz
Abuse complaint sent (?): Yes (2025-10-03 19:35:17 UTC to abuse-ttnet{at}ttnet[dot]cz)
Takedown time:8 months, 8 days, 6 hours, 25 minutes Bad (down since 2026-06-09 02:00:56 UTC)
Tags:CoinMiner zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-06-03info.zipzip 2c7220b6839ce22f7286f8f667c403a9040735525ba1065b1d89b3e6bd8c0214n/a 
2026-05-26info.zipzip 3adebf4f0217ff6cec7852a20ec9226a9bf9a6d4661361c779f531763b4fcb3dn/a 
2026-05-10info.zipzip 73ca4050aba04def0304083eb3a8566214f5a85e2851417f56d139fa0f435e55n/a 
2026-04-15info.zipzip 635e5a2ccacb295d6f754fa91b6a531b3eb45ea8cd15444c168d06983a1ed5b8n/a 
2026-02-03info.zipzip 844bf0d649ca4f167716e912a36c411b167b4d4ec48680cc92e72a51e409f022n/a 
2026-01-02info.zipzip bd333e07a59b855cb5da3e4f2ee13c6b1c726667078e27c67b4c34805293f506n/a 
2025-12-28info.zipzip a14008a11e291df271ce2db7ac0a046c53fe72be6c9fdff19fce327247a323a7n/a 
2025-10-03info.zipzip 7126b9932dc0cdfe751340edfa7c4a14b69262eb1afd0530e6d1fdb2e25986ddVirustotal results 85.51% CoinMiner