URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.154.1.144
Firstseen:2024-01-30 13:14:05 UTC
Total malware sites :9
Online malware sites :0 (0%)
Offline Malware sites :9 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-01-30 15:10:37http://45.154.1.144/sorry.shOffline script geenensp
2024-01-30 13:14:08http://45.154.1.144/bins/VRmpslOfflineelf gafgyt ext mirai ext lrz_urlhaus
2024-01-30 13:14:08http://45.154.1.144/bins/VRspcOfflineelf gafgyt ext mirai ext lrz_urlhaus
2024-01-30 13:14:08http://45.154.1.144/bins/VRppcOfflineelf gafgyt ext mirai ext lrz_urlhaus
2024-01-30 13:14:08http://45.154.1.144/bins/VRarm7Offlineelf gafgyt ext mirai ext lrz_urlhaus
2024-01-30 13:14:08http://45.154.1.144/bins/VRarmOfflineelf gafgyt ext mirai ext lrz_urlhaus
2024-01-30 13:14:08http://45.154.1.144/bins/VRm68kOfflineelf gafgyt ext mirai ext lrz_urlhaus
2024-01-30 13:14:08http://45.154.1.144/bins/VRx86Offlineelf gafgyt ext mirai ext lrz_urlhaus
2024-01-30 13:14:08http://45.154.1.144/bins/VRmipsOfflineelf gafgyt ext mirai ext lrz_urlhaus