URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.81.242.10
Firstseen:2024-05-01 05:42:03 UTC
Total malware sites :24
Online malware sites :0 (0%)
Offline Malware sites :24 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-05-01 05:42:05 45.81.242.10Not listedAS210218 OpenFiber-Italy- ITyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-05-02 23:09:12http://45.81.242.10/m68kOfflineelf ClearlyNotB
2024-05-02 23:09:03http://45.81.242.10/sh4Offlineelf ClearlyNotB
2024-05-02 23:09:03http://45.81.242.10/i686Offlineelf ClearlyNotB
2024-05-01 10:33:08http://45.81.242.10/mpsl.nsOffline 32-bit elf mips geenensp
2024-05-01 08:10:09http://45.81.242.10/arm4Offlineelf gafgyt ext mirai ext abus3reports
2024-05-01 08:10:09http://45.81.242.10/x86_64Offlineelf mirai ext abus3reports
2024-05-01 08:10:09http://45.81.242.10/arm6Offlineelf mirai ext abus3reports
2024-05-01 08:09:06http://45.81.242.10/liOfflineelf shellscript abus3reports
2024-05-01 08:09:06http://45.81.242.10/bOfflineelf shellscript abus3reports
2024-05-01 08:09:06http://45.81.242.10/shOfflineelf shellscript abus3reports
2024-05-01 08:09:06http://45.81.242.10/mpslOfflineelf gafgyt ext shellscript abus3reports
2024-05-01 08:09:06http://45.81.242.10/mipsOfflineelf gafgyt ext shellscript abus3reports
2024-05-01 08:09:06http://45.81.242.10/c.shOfflineelf shellscript abus3reports
2024-05-01 08:09:06http://45.81.242.10/wget.shOfflineelf shellscript abus3reports
2024-05-01 08:09:06http://45.81.242.10/weedOfflineelf shellscript abus3reports
2024-05-01 08:09:06http://45.81.242.10/jawsOfflineelf shellscript abus3reports
2024-05-01 08:09:06http://45.81.242.10/gOfflineelf shellscript abus3reports
2024-05-01 08:09:05http://45.81.242.10/bxOfflineelf shellscript abus3reports
2024-05-01 08:09:05http://45.81.242.10/z.shOfflineelf shellscript abus3reports
2024-05-01 08:09:05http://45.81.242.10/linksysOfflineelf shellscript abus3reports
2024-05-01 08:09:05http://45.81.242.10/adbOfflineelf shellscript abus3reports
2024-05-01 08:09:05http://45.81.242.10/w.shOfflineelf shellscript abus3reports
2024-05-01 05:42:05http://45.81.242.10/arm5Offlineelf gafgyt ext tolisec
2024-05-01 05:42:05http://45.81.242.10/arm7Offlineelf mirai ext tolisec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-05-02 10:34:22ab341c21955bbce7da491dc3e0c1b86e6e3617555dc3d03efc017888db227b55elf 
2024-05-02 10:27:0497b9b5c6ba4ebc1ae61c27dac9a76b2646f5be5690a71532676a1272fb28c102elfMirai
2024-05-02 10:26:0423747ce3f78ad7cad71e07e9ccc34ada73ee7eea52de7c7a02b76d6965bfbbb4elf 
2024-05-02 10:25:41bb035f48a526760d6ec3104887c7d9a3cc20f2731a7295d0921469a1ae011d6belf 
2024-05-02 10:24:19ab341c21955bbce7da491dc3e0c1b86e6e3617555dc3d03efc017888db227b55elf 
2024-05-02 10:19:05bb035f48a526760d6ec3104887c7d9a3cc20f2731a7295d0921469a1ae011d6belf 
2024-05-02 10:13:36fb58219b8d72302f24570254c124744b6aada571a8536b48f52dfab02b970d7felf  
2024-05-02 10:12:57a6a05a83fc9b9b44810202e94872b8c85cfe3345fa24c35023775d0ce30ec6faelf 
2024-05-01 10:33:08509d90b598a685633784f2380e066966e381b0f85f5791ea0f83e9801e6b51caelf  
2024-05-01 10:26:25a55d734d58912245efc2f2ca6ffa66ae59b8dc818b100eeb2c27905c7fab0156elf  
2024-05-01 10:18:4387b0a8c4a39c228273a6d44791723347b5b87d7cd28c34fafcbffd49491280caelfMirai
2024-05-01 10:01:35bcbe3db28ca92dada13cc798aa6aa56c399f5fdfdee6b56cd92cd12d3fba951delf  
2024-05-01 09:56:014407dcd0d2dfb8c9b3d1e45c05411a7e0cf3adeba89c2689d0275c71f8522178elf  
2024-05-01 09:54:169c423b8eb6fb757005baa31dce92b67da6dfe2be093c8d6249d01c015b84f52aelfGafgyt
2024-05-01 09:52:15c0b2cdc428459c2b792758b80101587de0a1a103b5ce1457cfad8bdee8a07fa4elf  
2024-05-01 08:10:098efd3d4978939aac6c2786e2390909839d3a3252bd0e3141e84511b3324f06f9elfMirai
2024-05-01 08:10:09daf90fdf24e05e1a54810bff811a4add02146feac5fde5ef12dd9d5e58975c6belfMirai
2024-05-01 08:10:097167ccf864dafe3c419e82a632a28ea729323d116ac4b894109c3bc709c7c599elfMirai
2024-05-01 08:09:068b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:068b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:067e94017f5fb146322008dd129834844562ee16073ba9fe30992ea24f90711563unknown  
2024-05-01 08:09:0623304f2dcd85788a025cd0be611e7308703be939ee28f807c9ea92f7f651c04delfGafgyt
2024-05-01 08:09:068b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:06c84aecad472883b9c198248037fd5436a3f3f94eff3dbcc8c3a095cc21058018elfGafgyt
2024-05-01 08:09:068b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:068b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:068b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:068b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:058b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:058b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:058b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:058b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 08:09:058b9a3670b7c31d6723ea2a14bf6b766f0e7856e5644eaedcca4f32a9e0fb1a9cunknown  
2024-05-01 05:42:05762cd9a2e18dbbf0a21e4b25f57616b7d63e99bd167d5427c45061f4a1b9573celfMirai
2024-05-01 05:42:04903f5c80b198a38f7cb3935ca9982d73a62f55c4f1fc22d7bd21df4cc132f62delfGafgyt