🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for https://217.60.195.113/sh which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry



ID:3864226
URL: https://217.60.195.113/sh
URL Status:Offline
Host: 217.60.195.113
Date added:2026-06-13 22:44:28 UTC
Last online:2026-09-11 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-06-13 22:45:17 UTC to abuse{at}swissnetwork[dot]io)
Takedown time:2 months, 29 days, 16 hours, 35 minutes Bad (down since 2026-09-11 15:21:13 UTC)
Tags:CoinMiner sh ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-06shsh ed23a8c75dc4f04acd8b68c51a0ebdb4d5cce6c06eed2451ebd0428a32d9df99n/a
2026-07-16shsh 0af1e1824def0944d69e44c3ca76bc52163ee20dda7e978ead06134f550fbdc5n/a
2026-06-13shsh 7c8e7619c5398d3b857e6f72cf791e2c2e27762ddd8521eb8971c893cdb8b1fcn/a