URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.13.151.59
Firstseen:2025-01-15 08:07:05 UTC
Total malware sites :23
Online malware sites :0 (0%)
Offline Malware sites :23 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-01-15 08:07:07 45.13.151.59Not listedAS215703 FREAKHOSTING- ROyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-02-03 10:16:18http://45.13.151.59/Ayedz.Armv61Offlineelf gafgyt ext ua-wget ClearlyNotB
2025-02-03 10:16:18http://45.13.151.59/shOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-02-03 10:16:18http://45.13.151.59/Ayedz.m68kOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-02-03 10:16:18http://45.13.151.59/Ayedz.ppcOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-02-03 10:16:15http://45.13.151.59/Ayedz.mipsOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-02-03 10:16:15http://45.13.151.59/Ayedz.x86Offlineelf gafgyt ext ua-wget ClearlyNotB
2025-02-03 10:16:14http://45.13.151.59/apache2Offlineelf gafgyt ext ua-wget ClearlyNotB
2025-02-03 10:16:09http://45.13.151.59/Ayedz.sh4Offlineelf gafgyt ext ua-wget ClearlyNotB
2025-02-03 10:16:08http://45.13.151.59/Ayedz.i586Offlineelf gafgyt ext ua-wget ClearlyNotB
2025-02-03 10:16:08http://45.13.151.59/Ayedz.mipselOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-02-03 10:16:08http://45.13.151.59/Ayedz.i686Offlineelf gafgyt ext ua-wget ClearlyNotB
2025-01-15 14:43:05http://45.13.151.59/d/xd.mpslOfflineelf mirai ext opendir NDA0E
2025-01-15 14:42:10http://45.13.151.59/d/xd.arm6Offlineelf mirai ext opendir NDA0E
2025-01-15 14:42:10http://45.13.151.59/d/xd.ppcOfflineelf mirai ext opendir NDA0E
2025-01-15 14:42:10http://45.13.151.59/d/xd.spcOfflineelf mirai ext opendir NDA0E
2025-01-15 14:42:10http://45.13.151.59/d/xd.x86Offlineelf mirai ext opendir NDA0E
2025-01-15 14:42:10http://45.13.151.59/d/xd.arm7Offlineelf mirai ext opendir NDA0E
2025-01-15 14:42:10http://45.13.151.59/d/xd.sh4Offlineelf mirai ext opendir NDA0E
2025-01-15 14:42:10http://45.13.151.59/d/xd.m68kOfflineelf mirai ext opendir NDA0E
2025-01-15 14:42:10http://45.13.151.59/d/xd.arm5Offlineelf mirai ext opendir NDA0E
2025-01-15 14:42:10http://45.13.151.59/d/xd.mipsOfflineelf mirai ext opendir NDA0E
2025-01-15 14:42:10http://45.13.151.59/d/xd.armOfflineelf mirai ext opendir NDA0E
2025-01-15 08:07:07http://45.13.151.59/sensi.shOfflinemirai ext lontze7

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-02-03 21:24:56e39df432a5a71e0e5b8febfa1d7b18b5e98af7dd2118ca5840e1e626ab461a7aelfGafgyt
2025-02-03 10:16:183072d5b940e751396787a378aa8390141aacb2153ea35be7eaf6dbe663980ad6elfGafgyt
2025-02-03 10:16:18dc575568f5184a4e15c95db6e709f1de9ceb130a3b12b98d905810d9697b8f86elfGafgyt
2025-02-03 10:16:18d368946b25ecf3513dd9de5aadd9f120ff798c319ab810d2c9980fc305f17b25elfGafgyt
2025-02-03 10:16:17573bc144eb95be8aa182f26bf2d2b0467e4d3f216584add8b626030d6a4d4607elfGafgyt
2025-02-03 10:16:15bb29be14b19f850631ac1934e766179334b5a9b66b5cbae2a04d2d3810beeabaelfGafgyt
2025-02-03 10:16:15bd2366e7072aa4f23181fdb1a54b8b8a199867aa46cd4281cd45f2e3a7eca8c0elfGafgyt
2025-02-03 10:16:14b335ce5eddb63e4d7e4d550795b5c536d192e863f7f667132a8aee4b5b8d2ecfelfGafgyt
2025-02-03 10:16:09ffd79f0765c87e2140fb20e98cde144845c9688edcd44da40c5563690317bfceelfGafgyt
2025-02-03 10:16:080e3ddcff43aa3c7b431e06983ecc24da4245bd5ca805f0dda173235b2087f49felfGafgyt
2025-02-03 10:16:08634aec0378a84a3b45393f5072b029f032cb551424d8bac02c2fa911214f0ba8elfGafgyt
2025-02-03 10:16:0847134e87eb0f623763091f651f01fdcaef2e62c1a4df04b2f4c71f7394503e01elfGafgyt
2025-01-15 14:43:05cd2e4527cedd13f92655f0ba0ef81ef8c096b9fe95b292bfa958ef58b59c0d8felfMirai
2025-01-15 14:42:10b09b192ebd79866f1df38832089c03205a2485d75b58431a96a70fcd09423486elfMirai
2025-01-15 14:42:1090d73caea96b9751bfce4bb8188b6f639a717351d2bf8e74deb6407cfcba34f2elfMirai
2025-01-15 14:42:10becb5d7ad037f39b912807bbf7534eb717de8fe39228931a650e0e667e1a5b72elfMirai
2025-01-15 14:42:103aff058d7b58eb91ccde83818aae5dd597aae06d96ab89c080c0a3d88f877f31elfMirai
2025-01-15 14:42:1095990a559d7dced77b2886a15f381d5bbb1e28b87a7508884e48392cac956dc8elfMirai
2025-01-15 14:42:10379780768184200e4533d0b62e1886a95902db29010acc12ab85d43fd33bec71elfMirai
2025-01-15 14:42:10f31e05162f0cad3f9615a27f0b97e86843c034405ec25cd2ac65e9e73f96c79aelfMirai
2025-01-15 14:42:10345d632c1f9def9685aaa29c9cf12a71c8d09f1126ec587cd18755ef26d3d941elfMirai
2025-01-15 14:42:10a964b7ee00bf9c8c260d94a396558f91087e0cc108574abc9d859178be992001elfMirai
2025-01-15 14:42:10741760a3be70b48f944ae74edfcf7341ae881635a176d5694441188b170b6c9delfMirai
2025-01-15 08:07:0781bceab3472a818b061caa7d8d0bab3171bed77a3b5b86ceffae3fd2d16be12bshMirai