URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 117.240.155.245
Firstseen:2024-12-22 17:27:04 UTC
Total malware sites :16
Online malware sites :15 (94%)
Offline Malware sites :1 (6%)
Newest active malware site :2024-12-22 17:27:18 UTC
Oldest active malware site :2024-12-22 17:27:14 UTC (Age: 1 year, 5 month, 11 days, 18 hours, 49 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-12-22 17:27:14 117.240.155.245Not listedAS9829 BSNL-NIB- INyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-12-22 17:27:18http://117.240.155.245:30140/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:17http://117.240.155.245:30330/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:16http://117.240.155.245:30430/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:16http://117.240.155.245:30120/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:16http://117.240.155.245:30010/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:16http://117.240.155.245:30250/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:16http://117.240.155.245:30310/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:15http://117.240.155.245:30470/sshdOfflinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:15http://117.240.155.245:30380/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:15http://117.240.155.245:30300/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:15http://117.240.155.245:30480/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:15http://117.240.155.245:30270/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:15http://117.240.155.245:30410/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:14http://117.240.155.245:30420/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:14http://117.240.155.245:30490/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre
2024-12-22 17:27:14http://117.240.155.245:30460/sshdOnlinebackdoor elf sshdkit DaveLikesMalwre

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-04-24 02:11:36b11c437211bb0518ad69606f505727458e842e15756e29079aace63b902ef40delf 
2025-01-28 07:29:29e1da0e70c7a1b08884d22f3c63a81d1b9a3dc2e1854acb742c7a5e1ce932ac81elf 
2024-12-22 17:27:18ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:17ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:16ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:16ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:16ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:16ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:15ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:15ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:15ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:14ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:14ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:14ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:14ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:13ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:13ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf  
2024-12-22 17:27:13ab69ef32017a5365ee0e7faca03e1352382865c5672e989d99d2d77ec91c33efelf