URLhaus Database

You are currently viewing the URLhaus database entry for https://217.60.195.113/test/riscv which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3888355
URL: https://217.60.195.113/test/riscv
URL Status:Offline
Host: 217.60.195.113
Date added:2026-07-18 18:41:16 UTC
Last online:2026-08-06 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-07-18 18:42:19 UTC to abuse{at}swissnetwork[dot]io)
Takedown time:19 days, 0 hours, 45 minutes Bad (down since 2026-08-06 19:28:03 UTC)
Tags:CoinMiner elf mirai link Prometei redtail ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-07-31n/aelf 3f3bf218089d1488617d37f8a5116bb2791eb39ce06a1b5bc9a4cdfe5e94dd39n/aPrometei
2026-07-25n/aelf 57de376767a78229701434a2efe5d6410132b208417e8d9fc0891405dfc7be09n/a
2026-07-23n/aelf e2bc7981064d3c9ed898a0f62d659fdc2fc9646dee47a9ca92b9b28b96c27a3bn/aMirai
2026-07-19n/aelf e981d296a7034bc03a3a84185b5ac07d26afc01004f55cafadfaad1c42d70f40n/a
2026-07-19n/aelf 50f055e3b6662ff9f81a04eef52092b644f1617b9d0d9e6bc3f1f1deca01e3a9n/a
2026-07-18n/aelf cd6dc7a2725ad8550e21cc16f471519e3e2abd32df2acb45804d5af6a078c44fn/aPrometei