URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: xanax.enzostress.st
Domain registrar: n/a
Domain registration date:2025-08-16 00:00:00 UTC
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2026-02-13 08:32:05 UTC
Total malware sites :10
Online malware sites :6 (60%)
Offline Malware sites :4 (40%)
Newest active malware site :2026-02-13 08:33:10 UTC
Oldest active malware site :2026-02-13 08:32:06 UTC (Age: 1 day, 1 hours, 25 minutes)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-02-13 18:27:28 178.16.52.229SBL683901AS202412 OMEGATECH-AS- DEyes
2026-02-13 18:27:27 194.116.172.95vm4830291.example.comNot listedAS209847 THE- RUyes
2026-02-13 08:32:06 185.196.41.201Not listedAS50053 VDSKA-AS- NLno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-02-13 08:33:10http://xanax.enzostress.st/bins.shOnlinebotnetdomain mirai ext sh ua-wget NDA0E
2026-02-13 08:33:10http://xanax.enzostress.st/goahead.shOfflinebotnetdomain sh ua-wget NDA0E
2026-02-13 08:33:10http://xanax.enzostress.st/av.shOnlinebotnetdomain sh ua-wget NDA0E
2026-02-13 08:32:18http://xanax.enzostress.st/arm6Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2026-02-13 08:32:18http://xanax.enzostress.st/mipsOnlinebotnetdomain elf mirai ext ua-wget NDA0E
2026-02-13 08:32:18http://xanax.enzostress.st/mpslOnlinebotnetdomain elf mirai ext ua-wget NDA0E
2026-02-13 08:32:13http://xanax.enzostress.st/arm4Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2026-02-13 08:32:13http://xanax.enzostress.st/x86_64Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2026-02-13 08:32:07http://xanax.enzostress.st/arm5Onlinebotnetdomain elf mirai ext ua-wget NDA0E
2026-02-13 08:32:06http://xanax.enzostress.st/arm7Onlinebotnetdomain elf mirai ext ua-wget NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-02-14 08:04:049ecfa8723d042c9d4f60991e2b337cea5757fa5f39c729c5744123ea1da0c6c8elfMirai
2026-02-14 07:11:03c47bc24ea51550ae30e8574fc23862208eb7ea1beec6b2550c7df91ee1ff15d0elfMirai
2026-02-14 01:27:281a26e62115a4b0298f1fcf423e8067e5fe45a1ac6912e9975a6c3844b17062cbelfMirai
2026-02-13 19:51:14701e218c7c650f24a7d4b2dc1f10d3997edcc8547ee884f804db05aabe1f369aelfMirai
2026-02-13 19:39:5510b27c0767a74d2674e8f1b3fe230dbb984939f809c908c7fa913e4696d4be22elfMirai
2026-02-13 18:47:040965d07e60fbd4832a86ea203bf972142b92c1bb61084272a8b8d870c3666d1belfMirai
2026-02-13 18:27:2672ba78aeec34bcd1c4181af54255e33f714d4998970839682ab003fc54dcb893sh 
2026-02-13 08:33:10d907b66be5929ba2a48a758cc32b17c789ec1bcc24c4a8a502f76f0b49c0bd35shMirai
2026-02-13 08:33:101497644e68596e708c587684454e595dab840d375d9141a280862afe2b60c2bdsh 
2026-02-13 08:33:1053ad9731fa855c98d6f2befd2b31a52a28cb1eadb4d72424e56f3896f6516f63sh 
2026-02-13 08:32:18505c7dad1f153d877d0eaf49c96fc5aea03000d3127fe927ffa4a1812f793186elfMirai
2026-02-13 08:32:1839ea5c77595791f225804dfe8ad36c485a391191dc31326dc08f4527bf18577felfMirai
2026-02-13 08:32:180485cca308250bb28357fa29577530f950ab386cf2781848328a1256f2127ebbelfMirai
2026-02-13 08:32:133f302d91b24c943426d71e0775c4041b04123d78b0b9e778a64136708e9ee4f4elfMirai
2026-02-13 08:32:1396a988d15e8d342e9f2ba4eda3a9bdded94170f743821fa1d97ab612cf69fac2elfMirai
2026-02-13 08:32:0639826aaef71a256b7f220273335c9c36ca7382023f110045b718f98107987f91elfMirai
2026-02-13 08:32:06f53ac40dcd7fc5392041756ce0c422eb634fd8025d6dbeab88d038269074bbd9elfMirai