URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 104.248.155.103
Firstseen:2025-02-27 17:10:03 UTC
Total malware sites :23
Online malware sites :0 (0%)
Offline Malware sites :23 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-02-27 17:10:06 104.248.155.103Not listedAS14061 DIGITALOCEAN-ASN- SGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-02-27 17:26:02http://104.248.155.103/huawei.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:26:02http://104.248.155.103/telnet.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:26:02http://104.248.155.103/NightBot.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:25:05http://104.248.155.103/jaws.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:25:05http://104.248.155.103/dvr.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:25:05http://104.248.155.103/routers.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:25:05http://104.248.155.103/gpon.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:25:05http://104.248.155.103/aws.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:25:05http://104.248.155.103/asus.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:25:05http://104.248.155.103/ssh.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:25:05http://104.248.155.103/realtek.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:25:05http://104.248.155.103/zte.shOfflinemirai ext opendir sh NDA0E
2025-02-27 17:11:05http://104.248.155.103/Binarys/Owari.sh4Offlinebash elf mirai ext ua-curl ua-wget Ash_XSS_1
2025-02-27 17:11:03http://104.248.155.103/Binarys/Owari.armOfflinebash elf mirai ext ua-curl ua-wget Ash_XSS_1
2025-02-27 17:10:06http://104.248.155.103/Binarys/Owari.mpslOfflinebash elf mirai ext ua-curl ua-wget Ash_XSS_1
2025-02-27 17:10:06http://104.248.155.103/Binarys/Owari.x86Offlinebash elf mirai ext ua-curl ua-wget Ash_XSS_1
2025-02-27 17:10:06http://104.248.155.103/Binarys/Owari.ppcOfflinebash elf mirai ext ua-curl ua-wget Ash_XSS_1
2025-02-27 17:10:06http://104.248.155.103/Binarys/Owari.spcOfflinebash elf mirai ext ua-curl ua-wget Ash_XSS_1
2025-02-27 17:10:06http://104.248.155.103/Binarys/Owari.arm7Offlinebash elf mirai ext ua-curl ua-wget Ash_XSS_1
2025-02-27 17:10:06http://104.248.155.103/Binarys/Owari.m68kOfflinebash elf mirai ext ua-curl ua-wget Ash_XSS_1
2025-02-27 17:10:06http://104.248.155.103/Binarys/Owari.arm6Offlinebash elf mirai ext ua-curl ua-wget Ash_XSS_1
2025-02-27 17:10:06http://104.248.155.103/Binarys/Owari.arm5Offlinebash elf mirai ext ua-curl ua-wget Ash_XSS_1
2025-02-27 17:10:06http://104.248.155.103/Binarys/Owari.mipsOfflinebash elf mirai ext ua-curl ua-wget Ash_XSS_1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-02-27 17:26:0281c7acbcf03e7cc751c00e2c33b2c251d034ecc6dddb28aae4fef6a9f7d83eccshMirai
2025-02-27 17:26:02dbc0366ffa6359d5c0e60ff24ea5b6b12d887e108151f904ff61479b302b17a5shMirai
2025-02-27 17:26:02b3a789043e27d5d44d3e858b8425410bec2aff61a883dee55e927c1d67bbc071shMirai
2025-02-27 17:25:056e7a47d27365c1b9c0c3ef2399b0d32ffd5e1749ba2c2a0caf38e9dd790d4326shMirai
2025-02-27 17:25:0588c5f5d6b21d8cf7ef6da652caa5bd5ca43844880cb6d3f9462a73f5430f591dshMirai
2025-02-27 17:25:05092f214ad2b48000bf7930c8a0eb988800063eade53cf19f9de5708633dbf44dshMirai
2025-02-27 17:25:05df04250fa16e516d1539daee68d87bb27c0c37e713823f6ea0b55528050d1b30shMirai
2025-02-27 17:25:0578a66027078a72643009203a631603aba2d4f22e657c1516c73e6e84d6988a02shMirai
2025-02-27 17:25:052e58b781aa17d1b4ad4eac26832b7a356e3304c8f6cf3c33c40ed782db9be7bfshMirai
2025-02-27 17:25:0538fee5cc2073289dac8f9536724679807d9ccd3309db441de48119eedc99521cshMirai
2025-02-27 17:25:04e2b7220c56873c0cd34cbf855d225c49d86cea9f8f04075e57bda46ee0b17d99shMirai
2025-02-27 17:25:042e55d7c96d6db8ed2ed1de42035a0e09984268fa01274647220eb89af279f128shMirai
2025-02-27 17:11:05af3228f3ea460aad891c7eb7778269c210eb2fcf6ef0894ab54dbc4b2734d805elfMirai
2025-02-27 17:11:03317c244e7b825b42dc669de67122e85c3492ceb7f12a88f2b1531d8089e31162elfMirai
2025-02-27 17:10:06902fef384656d3fb3f1a201c3fbd2c73138803388a4194bb395a4374425e6f0belfMirai
2025-02-27 17:10:06b2ce9efa52ad35c866cca022f8a53bf75eba3ddb5c63b06ec4e01487d81977d4elfMirai
2025-02-27 17:10:06097b65c9899a5375e59fe4edb2d806b3f320d54732bb8aef8235f6fff35dd8f5elfMirai
2025-02-27 17:10:0619a989b9c67821a2cdae73c77bf5c9efecc3af017c40e8cd9a7580d2a330e621elfMirai
2025-02-27 17:10:0677b1aaf0b3f566784c233260d4c4d73ae74f84b66cfe5ca01011d6cea80e03f5elfMirai
2025-02-27 17:10:06231f7d2f6cd0acc083912e1405abefec5e146939a9e22b005202bede8652394delfMirai
2025-02-27 17:10:06eb9c53207d9f0ccfbc5e648b81b6d3fd257e4e7d3657f36a5e5a0b832fe5fc56elfMirai
2025-02-27 17:10:05ec6cb86196be10925304473c7bf8e1cd99033fa2e6fd64d7147ebaf6b96a61e2elfMirai
2025-02-27 17:10:05a5bb98b609b8fd91256e3319427aec4e7827bc5e3f5690186e7b4feb808767f5elfMirai