URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.135.194.27
Firstseen:2025-05-01 18:09:03 UTC
Total malware sites :17
Online malware sites :6 (35%)
Offline Malware sites :11 (65%)
Newest active malware site :2026-03-24 15:34:07 UTC
Oldest active malware site :2026-03-19 01:33:15 UTC (Age: 6 days, 2 hours, 30 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-01 18:09:05 45.135.194.27SBL679271AS51396 PFCLOUD- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-03-24 15:34:07http://45.135.194.27/x86Onlineelf mirai ext ua-wget ClearlyNotB
2026-03-19 01:36:20http://45.135.194.27/arm7Onlineelf mirai ext ua-wget ClearlyNotB
2026-03-19 01:35:14http://45.135.194.27/mipsOnlineelf mirai ext ua-wget ClearlyNotB
2026-03-19 01:34:08http://45.135.194.27/arm5Onlineelf mirai ext ua-wget ClearlyNotB
2026-03-19 01:33:15http://45.135.194.27/arm4Onlineelf mirai ext ua-wget ClearlyNotB
2026-03-19 01:33:15http://45.135.194.27/mpslOnlineelf mirai ext ua-wget ClearlyNotB
2025-05-01 18:11:05http://45.135.194.27/bins/vcimanagement.m68kOfflinemirai ext opendir DaveLikesMalwre
2025-05-01 18:10:13http://45.135.194.27/bins/vcimanagement.arm5Offlinemirai ext opendir DaveLikesMalwre
2025-05-01 18:10:05http://45.135.194.27/bins/vcimanagement.arm7Offlinemirai ext opendir DaveLikesMalwre
2025-05-01 18:10:05http://45.135.194.27/bins/vcimanagement.x86Offlinemirai ext opendir DaveLikesMalwre
2025-05-01 18:09:11http://45.135.194.27/bins/vcimanagement.sh4Offlinemirai ext opendir DaveLikesMalwre
2025-05-01 18:09:06http://45.135.194.27/bins/vcimanagement.mpslOfflinemirai ext opendir DaveLikesMalwre
2025-05-01 18:09:06http://45.135.194.27/bins/vcimanagement.spcOfflinemirai ext opendir DaveLikesMalwre
2025-05-01 18:09:06http://45.135.194.27/bins/vcimanagement.mipsOfflinemirai ext opendir DaveLikesMalwre
2025-05-01 18:09:06http://45.135.194.27/bins/vcimanagement.arm6Offlinemirai ext opendir DaveLikesMalwre
2025-05-01 18:09:06http://45.135.194.27/bins/vcimanagement.armOfflinemirai ext opendir DaveLikesMalwre
2025-05-01 18:09:05http://45.135.194.27/bins/vcimanagement.ppcOfflinemirai ext opendir DaveLikesMalwre

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-03-24 15:34:070351b05a8edcf28fef1f9f8865c445f06202cf0c9aa4de49981e971eebf9d0d5elfMirai
2026-03-19 01:36:20b7cb6aae28866ba85bdb85f4d89b2ed624726fe001fb538b60b14947d893f137elfMirai
2026-03-19 01:35:14b2e47f06e9d10d61e0c22fa4f8b9a33a35d315f08209484dcd482e934367408delfMirai
2026-03-19 01:34:081f85624921573b384746ff64943ebe552f513236066c3c1b85fba81321e9e243elfMirai
2026-03-19 01:33:153788358a206d7dfe9aef794f210c2b249cb7ac1ed58301e0e1022799faf7fa91elfMirai
2026-03-19 01:33:151993ca03661ceda004963be1cbd133863062542636645bee674b32df2e03502felfMirai
2025-05-01 18:11:05d644a71ac0d460829bf5991ce3d49b641558430c7873de37e6f1941dd8edfc00elfMirai
2025-05-01 18:10:130a9b2781ee38ecebc5098829d85425e3a2c4ef091fb576cafe92d2fe318305e3elfMirai
2025-05-01 18:10:05fd81d623d0638292e2e54b80945698f10cffe8d6ae7b6e61916a2fe3e6be8998elfMirai
2025-05-01 18:10:05228d0197c8e8bc51a1f9316f27f684d5162b13d68871e92656ced113fcdde785elfMirai
2025-05-01 18:09:1108758740eefc87cefbba5603673e85a4b060b23c8d36eedf8f8a5f5e900faaadelfMirai
2025-05-01 18:09:05585c586bd52f4acb9395981762d1c0f75b97dc1f5190a15612181853e61c9f94elfMirai
2025-05-01 18:09:05b5577cb55ffc03e736d6920af97a6879f5a5c842f794fc9dfe8d9e0f98748079elfMirai
2025-05-01 18:09:0595ae818183a1ee7f3e1ede9216ee8074fde539d4831ee32b14db436c97b5dbf4elfMirai
2025-05-01 18:09:051f781ad9d01bb6fe5e7235288ac546058783b778e8b39375710bc91053fddd27elfMirai
2025-05-01 18:09:05240784516ac82a8511c6f577669116547a12a15f887b955907d693d0ca89764celfMirai
2025-05-01 18:09:059364ddc9785d0950f25cbb99eeb703aef0facc826ab84c9efeb3e1c5978c5acaelfMirai