URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.74.244.59
Firstseen:2026-05-16 19:18:06 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-05-16 19:18:12 45.74.244.59go.cmplistsonline.comSBL696946AS212219 HostingDunyam- TRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-05-16 19:18:12http://45.74.244.59/lightcloudEN.mpslOfflineHeliBot mirai ext opendir DaveLikesMalwre
2026-05-16 19:18:12http://45.74.244.59/bins.shOfflineHeliBot mirai ext opendir DaveLikesMalwre
2026-05-16 19:18:12http://45.74.244.59/lightcloudEN.x86Offlinegafgyt ext mirai ext opendir DaveLikesMalwre
2026-05-16 19:18:12http://45.74.244.59/lightcloudEN.mipsOfflineHeliBot mirai ext opendir DaveLikesMalwre

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-05-16 19:18:123ea7234d757c7a86a8b9202b232ee172288101a1a2a836846a4701cf7fae13a3shHeliBot
2026-05-16 19:18:127a70d426e4286c22d99638e60ede2430a6598e649c56c6f7c808f406f10a79ecelfGafgyt
2026-05-16 19:18:12915c4d33cc827fdc291bb4ccb0f9fcb52b530a2b8315e0d9599971ffddbd13e0elfHeliBot
2026-05-16 19:18:11bb4de876eb6706d28d997e9752ff4ee90103726d72e626a20302b5a3a1367953elfHeliBot