URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.128.96.191
Firstseen:2024-04-15 19:25:09 UTC
Total malware sites :16
Online malware sites :0 (0%)
Offline Malware sites :16 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-04-15 19:25:10 45.128.96.191Not listedAS50053 ANTON-LEVIN-AS- BGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-04-16 07:09:07http://45.128.96.191/.Ssh4Offlineelf geofenced mirai ext ua-wget USA BlinkzSec
2024-04-16 06:44:05http://45.128.96.191/wget.shOfflineelf geofenced shellscript USA abus3reports
2024-04-15 19:27:07http://45.128.96.191/bOfflineelf geofenced shell USA abus3reports
2024-04-15 19:27:07http://45.128.96.191/gOfflineelf geofenced shell USA abus3reports
2024-04-15 19:27:06http://45.128.96.191/bxOfflineelf geofenced shell USA abus3reports
2024-04-15 19:25:12http://45.128.96.191/.SmipsOfflineelf geofenced mirai ext USA abus3reports
2024-04-15 19:25:12http://45.128.96.191/.Sx86Offlineelf geofenced mirai ext ua-wget USA abus3reports
2024-04-15 19:25:11http://45.128.96.191/.Sarm6Offlineelf geofenced mirai ext ua-wget USA abus3reports
2024-04-15 19:25:11http://45.128.96.191/.SppcOfflineelf geofenced mirai ext ua-wget USA abus3reports
2024-04-15 19:25:11http://45.128.96.191/.Sarm7Offlineelf geofenced mirai ext ua-wget USA abus3reports
2024-04-15 19:25:11http://45.128.96.191/.Sx86_64Offlineelf geofenced mirai ext ua-wget USA abus3reports
2024-04-15 19:25:11http://45.128.96.191/.Sm68kOfflineelf geofenced mirai ext ua-wget USA abus3reports
2024-04-15 19:25:11http://45.128.96.191/.Sarm5Offlineelf gafgyt ext geofenced mirai ext ua-wget USA abus3reports
2024-04-15 19:25:11http://45.128.96.191/.SarmOfflineelf gafgyt ext geofenced mirai ext ua-wget USA abus3reports
2024-04-15 19:25:10http://45.128.96.191/.SmpslOfflineelf geofenced mirai ext ua-wget USA abus3reports
2024-04-15 19:25:10http://45.128.96.191/.SspcOfflineelf geofenced mirai ext ua-wget USA abus3reports

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-04-16 08:54:4460fad3d03171353efea70a0e9a0c511d34c3bbd8f9f57bfa6e8d989cd858ba14elfGafgyt
2024-04-16 08:45:338f680ed38fa9229b7b3b53bf730526be633ff635c35df8537ef98ffb3e58e170elfMirai
2024-04-16 08:43:37f3e4e7c0bc1fdc5c826050e8dde5f8442ed515a6305e49633aa88b2ade70d034elfMirai
2024-04-16 08:36:4032d2216770e86b62849e428886fb0d595773db1fad94c0b61ad503069722f882elfMirai
2024-04-16 08:34:00036ed5c6f97127e48b6a31781c28ec3e64ec75b2bdc36cb18bb08efb2fef344felfMirai
2024-04-16 08:28:01e4504f9329e03f782a75dd10cc4f849e17ef9a116b3b05dcc82e5d82c846ef68elfMirai
2024-04-16 08:25:59451171bbeb2d53d419b38803f1fd7b58c04476dbfd3a5d5a598373c03250528aelfGafgyt
2024-04-16 07:09:07329b7b203886a1313c7b183331ffa36732671443ad14dbd782dd0b515ea1a567elfMirai
2024-04-16 06:44:05920ed1ac096eb8bef212735440ad2203eb3d07a154887b6765a6e9bc917a42adunknown  
2024-04-15 19:27:070efed6e0b6a26b49a2fb8ab8e3a0bbac2a78bf114040b1afe1ae2892babf1e24unknown  
2024-04-15 19:27:075bc1c14e1d1efc4ba04d7569e4287741d9c680eadc9f8ac064e8da91b2650e0dunknown  
2024-04-15 19:27:060efed6e0b6a26b49a2fb8ab8e3a0bbac2a78bf114040b1afe1ae2892babf1e24unknown  
2024-04-15 19:25:127e0628978f46195ac00c2e77baa667896c4a2e462c4662a787182a98cb7b1982elf 
2024-04-15 19:25:128e82c27bc1507010f67e9dd3e9c01b66b4ba7a1ab5a3e0e3273165e71a30b1a1elfMirai
2024-04-15 19:25:114463933e11c60d114f8b48fcce9cfae1c4e2bb0f107a7a768e907cd9af1ffe1aelfMirai
2024-04-15 19:25:1119f0ee67f36f0fad35e10446712fe79d8f84b77f00ca759265d02921acf7340felfMirai
2024-04-15 19:25:11bbdf16fc7c078579af191f5ef7a3e9d975238cd70105d74e143bb95cb9fe2720elfMirai
2024-04-15 19:25:114aa603f940c0c44357cd9eec57d6eb93cef87d921da0c0aeeaf47cf9293f72f0elfMirai
2024-04-15 19:25:116a40ad020390fee9c9f4c237c719847f53ea7c947e2fa4ea8132dda116b60ca5elfMirai
2024-04-15 19:25:1138ae7b67e69f040db05df174f5080e887f2e7fd2b00320b9662b44543b3def65elfMirai
2024-04-15 19:25:11b3b4b45e6dc65b858357238852acec0868c2acfe7ea1558a56efc2efaf655a2felfMirai
2024-04-15 19:25:1057760a0152dc771dc63e61544c0fd13c0961444c188dfce889fafc835bfe563felfMirai
2024-04-15 19:25:1017919626bfb6f9868a42be8941bf8379cbd5a94a24502734c3d342c9d470f716elfMirai