URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 217.28.130.77
Firstseen:2024-12-30 13:41:03 UTC
Total malware sites :36
Online malware sites :0 (0%)
Offline Malware sites :36 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-12-30 13:41:10 217.28.130.77backbone2Not listedAS56322 ServerAstra-AS- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-12-30 13:42:06http://217.28.130.77/vv/armv7lOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/armv6lOfflineelf gafgyt ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/armv5lOfflineelf gafgyt ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/riscv32Offlineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/i686Offlineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/ss/armv5lOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/ss/armv4ebOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/mipselOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/armv5lOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vOfflinegafgyt ext sh NDA0E
2024-12-30 13:41:10http://217.28.130.77/tOfflinegafgyt ext sh NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/sparcOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/pOfflinegafgyt ext sh NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/mips64Offlineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/rrrrOfflineelf gafgyt ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/armv4ebOfflineelf gafgyt ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/riscv32Offlineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/sh4Offlineelf gafgyt ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/mipsOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/armv4lOfflineelf gafgyt ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/sh4Offlineelf gafgyt ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/armv6lOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/ss/armv6lOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/armv4lOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/powerpcOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/arcOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/mips64Offlineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/mipsOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/armv7lOfflineelf gafgyt ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/ss/armv4lOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/mipselOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/arcOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/sparcOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/tt/powerpcOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/ss/armv7lOfflineelf gafgyt ext mirai ext NDA0E
2024-12-30 13:41:10http://217.28.130.77/vv/armv4ebOfflineelf gafgyt ext mirai ext NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-12-31 10:54:42577e18cb426ef476f4056ce93e7305141fe2254945eb1fb30b55ae0e36d8c78eelf 
2024-12-30 13:42:057da3d4805795ca85be0e764d732cead98cd68b6a4ebde6b42cc56bb81979eb20elfMirai
2024-12-30 13:41:10f042bd4f19e2babfbad2568caace8f74d108a643eaea52cf6500559310fe0ee2shGafgyt
2024-12-30 13:41:103d73a5656daaa94feb4ae135f78cfc6341e1de9cc730b28f8fbf91fd315a484delfMirai
2024-12-30 13:41:1097a24b4b731f4e99adc64b52b2c8f282c0d81837d24f151417d10119fd5f5de0elfMirai
2024-12-30 13:41:10bb74ee67d5802e6af227fecca797bb9ad3236144137a821505c784f472f245beshGafgyt
2024-12-30 13:41:102f3d65e0e55d1973ef61bb8ae6594cb438eb2191e88e48398f2b8aa6b68965f7elfMirai
2024-12-30 13:41:10a262c2a7c581c95058ddfd0bcd30c20e856e036d5170f3c625d76e221db6d882elfMirai
2024-12-30 13:41:10b6e0036281a36ce295405c8edf3e65e24b11adcd4a7a5d77b43f9c14a624162delfMirai
2024-12-30 13:41:10fb4215132aee270148aabc85c0d6272b828cb5cf035c6b8823638c03a99c3e16elfGafgyt
2024-12-30 13:41:10d43fbf7577e3c3cddd61bf545d63fa164f9337fc239b4c6f3c11010158febb4delfMirai
2024-12-30 13:41:1015d8ea986f3cd94808a685c86a4e6666568d805e4134c6973a06fe6f96cdd8e1elfMirai
2024-12-30 13:41:107b9cda9a77caacb37cad7d9fb79fae04ef39cbb3b67a42c8e78c7e30991cb6b2elfMirai
2024-12-30 13:41:10973d1874e6cf981dbd95ba15dcb298e5693b7560f154dbec90df284e4ed51302shGafgyt
2024-12-30 13:41:103387544408ac70ab1de739f9e251cdcbc132489e30fbc82643933e0f13bb802felfMirai
2024-12-30 13:41:10c30aa06ea3414f5339d25b9ede114059401cac96f3003878165a045f404ca6d8elfGafgyt
2024-12-30 13:41:1086ba81725dc4638d6ef969cbfe5ccdf1718f19a636aa60037a456450c7b6ca34elfMirai
2024-12-30 13:41:10c4b1abb0597abfe6598be8d025fc110e809560daa4e385d02ba10f909485424felfMirai
2024-12-30 13:41:10cb1c2397a2408979b855b6269b0e545e137d54096ed46ff0ca6b0d91e24bbf52elfMirai
2024-12-30 13:41:10d4264092f6981bbcfaa1455bb1da08cb85860bbccc4c8601e30d80ec7f6c1e06elfGafgyt
2024-12-30 13:41:1090b4e907a8ed7c4ca292aa54504d5277ac5c079b009966290a0a0d754030e0c9elfMirai
2024-12-30 13:41:10084b71368b5b1a31b9e7edb7da480b903188c32a3c431b7607d379c9d34cf0e4elfMirai
2024-12-30 13:41:102a514e0ab8e84db630747fe9d38e72063d3f7ffe5f9076c73a3f9ff52eb2d6bfelfMirai
2024-12-30 13:41:10056f54b758e64868a6738a044d8710826c2e7e7d69bf1ddbc7f55bdc1755e246elfMirai
2024-12-30 13:41:107f517eab4da6fde36b55b5f24e2e3841580315b1d1ff17ac37d9296524677b5celfMirai
2024-12-30 13:41:102c0a317af8c8ad9255f20d6d7bda5effd8012886dd64f62484e33ca25995de8felfGafgyt
2024-12-30 13:41:09f163e77db013b6c781026dfd9e155b6676b048091c457dde5bf88da709750d26elfGafgyt
2024-12-30 13:41:0987946d04fb8bf398104ca3eaef0e56c1a989534b12fa15b71a1613f05bde0a55elfMirai
2024-12-30 13:41:091499d71502ce0151e98f77f6a6228dcfde6fa3e087e0f3d42a2c3fddb78601a8elfMirai
2024-12-30 13:41:09ac2921f97af63ea1e2ef94d53ec118b9b8f82964c9eac536f96eabe90a18f64felfMirai
2024-12-30 13:41:09c7d4204efff17cf1a07c62af9aa1d24ab87cf006437bde9128bc909cd1fbb81eelfMirai
2024-12-30 13:41:09f515ddd51f06d6ebfc8ae204a8c47446b9280b911d20a2aa6104ba065b4363e6elfMirai
2024-12-30 13:41:092ea8ef781900b5a3048e1f7f9d15893c5f366a9b1724de29cc5702d40c1a176aelfGafgyt
2024-12-30 13:41:0928c7e78d8548019ff49028a18fe0d794e4d9a83aab08b5ecef422303ed28f483elfMirai
2024-12-30 13:41:09a7bb217aa33c852b9dcc54067ebe57db77930cddc0d7342d84477bebe2017da2elfMirai
2024-12-30 13:41:098e8c5bbb9dc1ca65f0cce393493c48d15d4ef471be58178d58d8b06a1b7bb670elfGafgyt
2024-12-30 13:41:0916665f3472a973adddc341e684d708066d35d89d6454f92235111ff4d205096eelfGafgyt