URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.138.16.158
Firstseen:2025-08-23 00:55:05 UTC
Total malware sites :19
Online malware sites :0 (0%)
Offline Malware sites :19 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-23 00:55:15 45.138.16.158SBL687508AS210558 services-1337-gmbh- PLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-09-02 14:52:28http://45.138.16.158/bins/parm4Offlineelf ua-wget abuse_ch
2025-09-01 15:28:07http://45.138.16.158/bins/c.shOfflinegeofenced mirai ext opendir sh ua-wget USA botnetkiller
2025-09-01 15:17:07http://45.138.16.158/bins/bins.shOfflinegeofenced mirai ext opendir sh ua-wget USA botnetkiller
2025-09-01 15:17:07http://45.138.16.158/bins/w.shOfflinegeofenced mirai ext opendir sh ua-wget USA botnetkiller
2025-08-27 06:23:20http://45.138.16.158/bins/pmps1Offlineelf ua-wget abuse_ch
2025-08-27 06:11:08http://45.138.16.158/w.shOfflinegeofenced mirai ext sh ua-wget USA botnetkiller
2025-08-27 06:11:08http://45.138.16.158/c.shOfflinegeofenced mirai ext sh ua-wget USA botnetkiller
2025-08-23 07:39:32http://45.138.16.158/bins/o.xmlOfflinemirai ext sh ua-wget BlinkzSec
2025-08-23 00:55:23http://45.138.16.158/bins/parm6Offlineelf mirai ext ua-wget ClearlyNotB
2025-08-23 00:55:23http://45.138.16.158/bins/psh4Offlineelf mirai ext ua-wget ClearlyNotB
2025-08-23 00:55:23http://45.138.16.158/bins/pmipsOfflineelf mirai ext ua-wget ClearlyNotB
2025-08-23 00:55:20http://45.138.16.158/bins/parmOfflineelf mirai ext ua-wget ClearlyNotB
2025-08-23 00:55:20http://45.138.16.158/bins/pppcOfflineelf mirai ext ua-wget ClearlyNotB
2025-08-23 00:55:20http://45.138.16.158/bins/pmpslOfflineelf mirai ext ua-wget ClearlyNotB
2025-08-23 00:55:20http://45.138.16.158/bins/parm5Offlineelf mirai ext ua-wget ClearlyNotB
2025-08-23 00:55:20http://45.138.16.158/bins/pspcOfflineelf mirai ext ua-wget ClearlyNotB
2025-08-23 00:55:20http://45.138.16.158/bins/px86Offlineelf mirai ext ua-wget ClearlyNotB
2025-08-23 00:55:20http://45.138.16.158/bins/pm68kOfflineelf mirai ext ua-wget ClearlyNotB
2025-08-23 00:55:15http://45.138.16.158/bins/parm7Offlineelf mirai ext ua-wget ClearlyNotB

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-09-01 15:28:075c24b04adbf458ba32bb49cab85b3bafe0c8639e336f6afa961529206ef53531shMirai
2025-09-01 15:17:07ae3354cd9bbb37d0974a45e8160a0c3dd15ca407a8b5c71ce20d3e6c4c9dc27fshMirai
2025-09-01 15:17:072e4c3a5757edc5e67d5c1062df5cae1f30ff274a8091449faf5b4df44ad28e2bshMirai
2025-08-30 15:15:328e0d462132373f6e6c2878e939219ffc58b58092e8a9f678cbea6ac8af167da6elfMirai
2025-08-30 14:55:176f484e15134d6b9e612f93a5f43dd204a856a972ac6591ad8a1770819df42286elfMirai
2025-08-30 14:53:3139b6b6d9ffecbf4123bbce9254ef52a53f687faf00b8256997cb581c9db9d97aelfMirai
2025-08-30 14:42:36c4c891e901ec7309decc54c9a5a5c94485a3736a806ecffef7dd2e1c6ffe1d5delfMirai
2025-08-30 14:37:592a1a0b761c5b4e72740aab0db74380f445dbcd58aa0f9e18ffead9e723da0910elfMirai
2025-08-30 14:22:33143f046b9e8f9d09399912aab6363c5ac4f001dea9a601684447ee03cf63ab3belfMirai
2025-08-30 14:14:211e9e0a6980fedc848bb6ce1c52dec9bb0aabc31d50af8d7ec80af4216db6d239elfMirai
2025-08-30 14:12:0995a16d89bb5da774efcba66a80ef843a62ef3fb96dd4eefc9662315a1d481d8aelfMirai
2025-08-30 13:59:55d5cc2a96f20eb01fe0d6d0e06765c74537d3ad8ec7b14ec9adefa0a2becd0462elfMirai
2025-08-30 13:46:50b3a6eb3bd474954fcb2a25090e80142c86f6788d2a4aded225321a2d7951b0c6elfMirai
2025-08-30 10:40:5518acb7139009692c66fb66c620e0e34844df497860a57e8b7095b1769ca592d4elfMirai
2025-08-27 06:11:085c24b04adbf458ba32bb49cab85b3bafe0c8639e336f6afa961529206ef53531shMirai
2025-08-27 06:11:082e4c3a5757edc5e67d5c1062df5cae1f30ff274a8091449faf5b4df44ad28e2bshMirai
2025-08-23 07:39:3295ef05ede0b3f96e2d0c452bfd1ae223bda85853bf8cb72106fd45561c983a2fshMirai
2025-08-23 00:55:2387e7a1fb8243d3b12a570ee2812aa313b408ff252ecf92184eecf0f02f9ae09felfMirai
2025-08-23 00:55:23acd317399cbbe1a2f5f661a21e0f62e0aa937de960eab92029e8c2aa629ad7f0elfMirai
2025-08-23 00:55:23990ed26a639e6932e6c248f32945befc92d4e4a604d34c6ba7956b17779e8d12elfMirai
2025-08-23 00:55:20bf90d308fc669cddda9680e835cf37804e501dce2e94ad428a2cb80b4e9b8752elfMirai
2025-08-23 00:55:207bcf012c048202e199483916f58cd8206007bc88bbcfd2e31238a2314737c908elfMirai
2025-08-23 00:55:20126e3737b5ce59ca816a7f71f81f9dbd0d9f74291c921fe7743b22569dcc8bafelfMirai
2025-08-23 00:55:20bd069d1b7b6e0188fd16175c72d40270125e98de0f20cbaecd599b3e9f3fd4fbelfMirai
2025-08-23 00:55:20de98d44e8a6a656c39e9872f0144bf2a87aedd55d7956fc5147d786d709dce3celfMirai
2025-08-23 00:55:201777cf7935d3c66a436d87edccfd3272c1abf6651c7f60a483dba9a26591c4c1elfMirai
2025-08-23 00:55:20e5671c6187434d034fb811912b2df7b07a60f67b73e174c1a800758f704fad93elfMirai
2025-08-23 00:55:144717dd5d556bccb013cd79e75095e23bf66d830df9e91034eac07639fce1d990elfMirai