URLhaus Database

You are currently viewing the URLhaus database entry for http://84.200.154.119/sshd which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3443070
URL: http://84.200.154.119/sshd
URL Status:Offline
Host: 84.200.154.119
Date added:2025-02-17 14:47:05 UTC
Last online:2025-03-02 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-02-17 14:48:06 UTC to abuse{at}first-colo[dot]net)
Takedown time:12 days, 15 hours, 8 minutes Bad (down since 2025-03-02 05:57:02 UTC)
Tags:elf gafgyt link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-02-18n/aelf dd8d57df26725ee577a5fb8f90945bff74fafa27d1a73e5bf46237bd7175fe59n/aGafgyt
2025-02-17n/aelf 26e62031f85520a26337d10a63e14bdbd7c4e3f0ab839448d04275fb7ddc9133Virustotal results 61.29%Gafgyt