URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.232.72.93
Firstseen:2020-11-09 20:34:02 UTC
Total malware sites :26
Online malware sites :0 (0%)
Offline Malware sites :26 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-11-09 20:34:04 45.232.72.93Not listedAS267251 TELEFONARNET_TELECOMUNICACOES- BRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-11-22 14:34:04http://45.232.72.93:41363/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-11-20 11:21:06http://45.232.72.93:41363/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-11-20 10:55:05http://45.232.72.93:41363/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-10-05 19:26:12http://45.232.72.93:32971/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-10-05 18:54:07http://45.232.72.93:32971/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-27 06:50:05http://45.232.72.93:50425/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-02 18:54:21http://45.232.72.93:50052/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-02 18:30:05http://45.232.72.93:50052/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-07-25 18:41:04http://45.232.72.93:47521/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-07-23 17:24:09http://45.232.72.93:47521/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-07-20 05:02:09http://45.232.72.93:41373/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-07-20 01:21:06http://45.232.72.93:41373/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-06-09 20:54:12http://45.232.72.93:35071/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-05-26 01:38:11http://45.232.72.93:57306/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-05-22 23:34:15http://45.232.72.93:57306/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-22 23:05:09http://45.232.72.93:57306/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-29 07:52:19http://45.232.72.93:58225/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-29 07:33:17http://45.232.72.93:58225/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-24 14:48:04http://45.232.72.93:50048/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-24 14:27:09http://45.232.72.93:50048/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-23 03:11:40http://45.232.72.93:50048/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-19 05:40:13http://45.232.72.93:39218/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-17 22:11:10http://45.232.72.93:39218/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-17 17:40:05http://45.232.72.93:39218/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-16 23:55:12http://45.232.72.93:39218/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2020-11-09 20:34:04http://45.232.72.93:54632/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-11-22 14:34:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-11-20 11:21:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-11-20 10:55:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-10-05 19:26:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-10-05 18:54:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-27 06:50:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-02 18:54:2112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-02 18:30:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-25 18:41:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-23 17:24:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-20 05:02:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-20 01:21:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-09 20:54:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-26 01:38:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-22 23:34:1512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-22 23:05:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-29 07:52:1912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-29 07:33:1712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-24 14:48:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-24 14:27:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-23 03:11:4012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-19 05:40:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-17 22:11:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-17 17:40:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-16 23:55:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-11-09 20:34:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai