URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.132.180.127
Firstseen:2025-12-19 10:03:07 UTC
Total malware sites :31
Online malware sites :0 (0%)
Offline Malware sites :31 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-12-19 10:03:13 45.132.180.127SBL682805AS214943 RAILNET- UAyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-12-19 13:29:16http://45.132.180.127/xparmOfflineelf mirai ext ua-wget abuse_ch
2025-12-19 13:29:16http://45.132.180.127/xparcOfflineelf ua-wget abuse_ch
2025-12-19 13:29:16http://45.132.180.127/xpsparcOfflineelf ua-wget abuse_ch
2025-12-19 13:29:16http://45.132.180.127/xpi586Offlineelf ua-wget abuse_ch
2025-12-19 13:29:16http://45.132.180.127/xpi686Offlineelf ua-wget abuse_ch
2025-12-19 12:09:12http://45.132.180.127/o.xmlOfflinesh ua-wget NDA0E
2025-12-19 12:08:14http://45.132.180.127/a.shOfflinemirai ext sh ua-wget NDA0E
2025-12-19 12:06:24http://45.132.180.127/dlr.sh4Offlineelf mirai ext ua-wget NDA0E
2025-12-19 12:06:24http://45.132.180.127/dlr.x86Offlineelf mirai ext ua-wget NDA0E
2025-12-19 12:06:24http://45.132.180.127/dlr.mipsOfflineelf mirai ext ua-wget NDA0E
2025-12-19 12:06:23http://45.132.180.127/dlr.spcOfflineelf mirai ext ua-wget NDA0E
2025-12-19 12:06:23http://45.132.180.127/dlr.armOfflineelf mirai ext ua-wget NDA0E
2025-12-19 12:06:23http://45.132.180.127/dlr.m68kOfflineelf mirai ext ua-wget NDA0E
2025-12-19 12:06:23http://45.132.180.127/dlr.arm7Offlineelf mirai ext ua-wget NDA0E
2025-12-19 12:06:23http://45.132.180.127/dlr.arm5Offlineelf mirai ext ua-wget NDA0E
2025-12-19 12:06:23http://45.132.180.127/dlr.ppcOfflineelf mirai ext ua-wget NDA0E
2025-12-19 12:06:07http://45.132.180.127/dlr.arm6Offlineelf mirai ext ua-wget NDA0E
2025-12-19 12:06:06http://45.132.180.127/dlr.mpslOfflineelf mirai ext ua-wget NDA0E
2025-12-19 10:06:16http://45.132.180.127/xpmpslOfflineelf mirai ext ua-wget NDA0E
2025-12-19 10:06:14http://45.132.180.127/xpm68kOfflineelf mirai ext ua-wget NDA0E
2025-12-19 10:05:12http://45.132.180.127/xpmipsOfflineelf mirai ext ua-wget NDA0E
2025-12-19 10:05:12http://45.132.180.127/xparm5Offlineelf mirai ext ua-wget NDA0E
2025-12-19 10:04:10http://45.132.180.127/w.shOfflinemirai ext sh ua-wget NDA0E
2025-12-19 10:04:10http://45.132.180.127/xpspcOfflineelf mirai ext ua-wget NDA0E
2025-12-19 10:04:10http://45.132.180.127/xpppcOfflineelf mirai ext ua-wget NDA0E
2025-12-19 10:04:09http://45.132.180.127/xpsh4Offlineelf mirai ext ua-wget NDA0E
2025-12-19 10:04:09http://45.132.180.127/xparm7Offlineelf mirai ext ua-wget NDA0E
2025-12-19 10:04:09http://45.132.180.127/xparm6Offlineelf mirai ext ua-wget NDA0E
2025-12-19 10:04:09http://45.132.180.127/xpx86Offlineelf mirai ext ua-wget NDA0E
2025-12-19 10:04:07http://45.132.180.127/xparm4Offlineelf ua-wget NDA0E
2025-12-19 10:03:13http://45.132.180.127/c.shOfflinemirai ext sh ua-wget NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-12-19 13:29:160580273c3f41f5025401e4836e4eaab1fda97f11b92a9ed215aef432e8151ec9elfMirai
2025-12-19 12:09:12d398255e433f8448063cedc9a518ad5bcac30eebaabadee33b4840f455bed8f3sh 
2025-12-19 12:08:14a4868c47b43621628d6f82a778b6e76bcfce05d14f14873b5089ded23d64bb9eshMirai
2025-12-19 12:06:2463b12e1cbaac712396214896fadf2c5737b712015387dfa3b405ea52508e62f3elfMirai
2025-12-19 12:06:2405792543f2ec7e66ba4dc938699bf5555ae9cfcb81aec76662d330bb9ed39e16elfMirai
2025-12-19 12:06:2361f29118945e4883ae802db3b79401f9c2d66075ad8337ce4bfe3216052eb8feelfMirai
2025-12-19 12:06:23c9c86474d754f5cfc27f5c433e8ddf0be6846d71a7d9f6224e83b0af318b8c5eelfMirai
2025-12-19 12:06:23fe6f26eba044f82b78b3cb7f2cf2c7721871fe4de398cf25e90c37890db806d2elfMirai
2025-12-19 12:06:236d6ab10bed413f91dbfc344d5bc1f7a4582ffb1360e99f0b90e6077b62adba6eelfMirai
2025-12-19 12:06:23490c2a1f0e8a5cbc567dc05792fdc9ff1c8519e3745ad8b5798308f727581767elfMirai
2025-12-19 12:06:233c2d244953bb7b50af121ec7456517f880af8679d3a5fa6fc30cf4c287849ce9elfMirai
2025-12-19 12:06:23eb287794ff06e404f4e7ee6af8513d2ad466e85d6895bfc6258cf5f06507bd28elfMirai
2025-12-19 12:06:07ec4b1c95c8194d9b1e1c05c3e9b735d22215cfcafb579ca8c07c3393df7b0f7delfMirai
2025-12-19 12:06:0611b4fb69ecfe34f8e5971ae7a7da62cf0d2d5defbd0d125e9c3088225999c5dbelfMirai
2025-12-19 10:06:167ef1315c3e6667d670dfc11e07302c845b41f1e4643a0ca4c42e0d5390ad5080elfMirai
2025-12-19 10:06:14354c87c3d98f170852b5857bba1cb6a92adba034222b9558b3869f3f0149bc26elfMirai
2025-12-19 10:05:122b63ef456fbcfaa61cac464fd974a01fc3e8c77f378ae83bcaa52b66e5f3db0celfMirai
2025-12-19 10:05:11249bc7c5f69ca45551a7b7c35076a8a63b9c6de3d5228ca3006bd92583351fcfelfMirai
2025-12-19 10:04:10a8a600f401f2c17fbae2d7aa73ec6775dd123cc79d5e248c45339bc283e56f4fshMirai
2025-12-19 10:04:10b8d3fa58b5c2de4ae7ac3ab396ce12f3db1fdcd1471115dcfaed4acb996f1d39elfMirai
2025-12-19 10:04:106e675c36a690663707594e209383561ca3dd8e732e623bd9339f3819561cb00aelfMirai
2025-12-19 10:04:09b1fc3796b8cb3d426fc74e6d9f06637ab1643f071283dd63ac8a1ce5a26f0834elfMirai
2025-12-19 10:04:099c2c71084ec60f3df3fb5593d171e415af377298eff7f4bc4475be22cddbab25elfMirai
2025-12-19 10:04:0907ae848cc5ba570446b2e3e1ec560c6bb7f05e810a84a77a71f19c3f43270d65elfMirai
2025-12-19 10:04:09a76639e5ec05e6394636795bb2873c0127b0aa340d9f0f0067377263008d9dadelfMirai
2025-12-19 10:03:13fd10992c807133713f87397e461d9ded132a188a6eceb0feae9dbbf4ba72a285shMirai