############################################################################## # URLhaus ASN CSV Feed # # Generated on 2026-03-31 21:54:00 UTC # # # # For questions please refer to: # # https://urlhaus.abuse.ch/feeds/ # ############################################################################## # # Feed generated for AS2609 # # Dateadded (UTC),URL,URL_status,Threat,Tags,Host,IPaddress,ASnumber,Country "2025-12-27 07:19:05","http://41.231.37.153/rondo.dgx.sh","offline","malware_download","C2","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:12","http://41.231.37.153/rondo.ame.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:12","http://41.231.37.153/rondo.djc.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:12","http://41.231.37.153/rondo.ebj.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:12","http://41.231.37.153/rondo.fve.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:12","http://41.231.37.153/rondo.zqq.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:11","http://41.231.37.153/rondo.eby.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:11","http://41.231.37.153/rondo.sbx.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:11","http://41.231.37.153/rondo.ush.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:09","http://41.231.37.153/rondo.fep.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:09","http://41.231.37.153/rondo.txg.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:09","http://41.231.37.153/rondo.vgz.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:09","http://41.231.37.153/rondo.wtf.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-26 17:16:09","http://41.231.37.153/rondo.wyu.sh","offline","malware_download","sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 09:13:07","http://41.231.37.153/rondo.qre.sh","offline","malware_download","ascii|bash|sh|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:15","http://41.231.37.153/rondo.armebhf","offline","malware_download","Mirai|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:15","http://41.231.37.153/rondo.armv7l","offline","malware_download","Mirai|RondoDox|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:09","http://41.231.37.153/rondo.armeb","offline","malware_download","Mirai|RondoDox|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:09","http://41.231.37.153/rondo.armv6l","offline","malware_download","Mirai|RondoDox|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:09","http://41.231.37.153/rondo.mipsel","offline","malware_download","Gafgyt|Mirai|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:09","http://41.231.37.153/rondo.sparc","offline","malware_download","Mirai|RondoDox|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:08","http://41.231.37.153/rondo.i486","offline","malware_download","Mirai|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:07","http://41.231.37.153/rondo.armv4l","offline","malware_download","Mirai|RondoDox|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:07","http://41.231.37.153/rondo.mips","offline","malware_download","Gafgyt|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:06","http://41.231.37.153/rondo.aqu.sh","offline","malware_download","CoinMiner|Gafgyt|Mirai|RondoDox|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:06","http://41.231.37.153/rondo.arc700","offline","malware_download","Mirai|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:06","http://41.231.37.153/rondo.armv5l","offline","malware_download","Mirai|RondoDox|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:06","http://41.231.37.153/rondo.i586","offline","malware_download","Mirai|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:06","http://41.231.37.153/rondo.i686","offline","malware_download","Mirai|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:06","http://41.231.37.153/rondo.m68k","offline","malware_download","Mirai|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:06","http://41.231.37.153/rondo.powerpc","offline","malware_download","Mirai|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:06","http://41.231.37.153/rondo.sh4","offline","malware_download","Mirai|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-18 07:29:06","http://41.231.37.153/rondo.x86_64","offline","malware_download","Gafgyt|Mirai|RondoDox|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2025-12-08 07:53:06","http://41.231.37.153/rondo.powerpc-440fp","offline","malware_download","Mirai|RondoDox|ua-wget","41.231.37.153","41.231.37.153","2609","TN" "2023-11-27 07:36:11","http://medcar.com.tn/attivita/index.php","offline","malware_download","agenziaentrate|geo|geofenced|ITA|redir-302","medcar.com.tn","196.203.251.39","2609","TN" "2023-03-14 19:04:19","https://www.lebuffet.com.tn/scarica/","offline","malware_download","250255|7710|geofenced|Gozi|ISFB|ITA|redir-302|Ursnif","www.lebuffet.com.tn","196.203.251.36","2609","TN" "2023-03-14 19:03:47","https://www.lebuffet.com.tn/connect/","offline","malware_download","250255|7710|geofenced|Gozi|ISFB|ITA|redir-302|Ursnif","www.lebuffet.com.tn","196.203.251.36","2609","TN" "2023-03-14 19:03:17","https://medcar.com.tn/scarica/","offline","malware_download","250255|7710|geofenced|Gozi|ISFB|ITA|redir-302|Ursnif","medcar.com.tn","196.203.251.39","2609","TN" "2023-03-14 19:02:48","https://www.lebuffet.com.tn/agenzia/","offline","malware_download","250255|7710|geofenced|Gozi|ISFB|ITA|redir-302|Ursnif","www.lebuffet.com.tn","196.203.251.36","2609","TN" "2023-03-14 19:01:45","https://medcar.com.tn/connect/","offline","malware_download","250255|7710|geofenced|Gozi|ISFB|ITA|redir-302|Ursnif","medcar.com.tn","196.203.251.39","2609","TN" "2023-03-14 19:01:42","https://medcar.com.tn/agenzia/","offline","malware_download","250255|7710|geofenced|Gozi|ISFB|ITA|redir-302|Ursnif","medcar.com.tn","196.203.251.39","2609","TN" "2023-01-12 15:37:28","http://197.4.164.99:55873/Mozi.m","offline","malware_download","elf|Mirai|Mozi","197.4.164.99","197.4.164.99","2609","TN" "2022-12-16 19:37:08","http://197.6.60.132:51862/Mozi.a","offline","malware_download","elf|Mirai|Mozi","197.6.60.132","197.6.60.132","2609","TN" "2022-11-17 14:50:08","http://197.7.148.87:59522/Mozi.m","offline","malware_download","elf|Mirai|Mozi","197.7.148.87","197.7.148.87","2609","TN" "2022-09-26 07:13:05","http://41.225.234.51:65335/.i","offline","malware_download","Hajime","41.225.234.51","41.225.234.51","2609","TN" "2022-07-03 19:40:06","http://197.14.229.53:34448/.i","offline","malware_download","Hajime","197.14.229.53","197.14.229.53","2609","TN" "2022-03-29 21:21:04","http://www.chemsky.tn/64prPlDhbugztyb2Zl/xjvFXPUX7XeoPWTqSQ2/","offline","malware_download","emotet|epoch4|Heodo|redir-doc|xls","www.chemsky.tn","196.203.199.20","2609","TN" "2022-03-29 21:21:04","http://www.chemsky.tn/64prPlDhbugztyb2Zl/xjvFXPUX7XeoPWTqSQ2/?i=1","offline","malware_download","doc|emotet|epoch4|Heodo|SilentBuilder","www.chemsky.tn","196.203.199.20","2609","TN" "2020-06-03 06:43:45","http://41.225.87.250:4105/.i","offline","malware_download","32-bit|ARM|ELF|Hajime","41.225.87.250","41.225.87.250","2609","TN" "2019-05-09 18:13:02","http://www.mlplast.tn/aorvuye/INC/AgGrYbyKGB/","offline","malware_download","epoch2","www.mlplast.tn","196.203.199.20","2609","TN" "2019-05-02 05:33:05","http://41.231.120.138:7700/CMDBuilt.exe","offline","malware_download","AZORult|exe","41.231.120.138","41.231.120.138","2609","TN" # of entries: 51