URLhaus Database

You are currently viewing the URLhaus database entry for http://41.216.189.236/nz/nz.x86_64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3887322
URL: http://41.216.189.236/nz/nz.x86_64
URL Status:Offline
Host: 41.216.189.236
Date added:2026-07-16 20:38:32 UTC
Last online:2026-08-04 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-07-16 20:39:20 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:18 days, 23 hours, 58 minutes Bad (down since 2026-08-04 20:37:50 UTC)
Tags:elf mirai link opendir ua-wget x86

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-04n/aelf 751f71204e421d4786ac36f82d7f1e2e07bd5a4c2b8df437784baa6018971feen/aMirai
2026-07-25n/aelf 99c3f02b2e8375dba5c7ad813d39d9846e0eb8586db185c34353185d447b36ban/aMirai
2026-07-24n/aelf 6b232621c7d31c73bee8fd4462106f68b9a060810a504ce4383470cd9c0c47d4n/aMirai
2026-07-22n/aelf e5a6d9c5f78f142873b9390d410f76ce8a7b900549cd60d85aa9478a6de5058en/aMirai
2026-07-21n/aelf 291d03172e06e9e95e794bb65db38e68c1c18489b03e6d5b00457350c13199e8n/aMirai
2026-07-18n/aelf 426f394fee5882b8d70b37c6fc8ca9ba1ce3bb6eb7573550b6b55c16d343788an/aMirai
2026-07-17n/aelf 667d249e882f6e189bb1ef23aa29b147d89bf7de8820c2ea7b98ad12a1c78f21n/aMirai
2026-07-16n/aelf a4884d39c0d2640b108f8c40505d8847cb20681b46a0a9c11f1411e5ad03090bn/aMirai