URLhaus Database

You are currently viewing the URLhaus database entry for http://41.216.189.157/nz/nz.x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3878180
URL: http://41.216.189.157/nz/nz.x86
URL Status:Offline
Host: 41.216.189.157
Date added:2026-06-29 21:43:28 UTC
Last online:2026-07-24 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-06-29 21:44:18 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:24 days, 2 hours, 37 minutes Bad (down since 2026-07-24 00:21:34 UTC)
Tags:elf mirai link opendir ua-wget x86

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-07-21n/aelf ae764a11e5a7aa0b064846590708a01c7541c73f50ced0637fcb7b786b196303n/aMirai
2026-07-09n/aelf 54fd2bd51e3cdea2b09da11d96ae7e87fbc7ada093a7818f2b1be5d95fa6fb19n/aMirai
2026-07-08n/aelf 45d9d7b300ec1181ba48a102c1d486f18c1f9aa15f501e9542709f48175c53d2n/aMirai
2026-07-07n/aelf b6d6effc52bd61fc5d7e36a6a25529b8125f33765d1510bfd3f88a708dd9d53dn/aMirai
2026-06-29n/aelf b463b4bd78682210a7876555be1251453be68c65793d48ae640ad5fa0ced1882n/aMirai