URLhaus Database

You are currently viewing the URLhaus database entry for http://41.216.189.236/nz/debug which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3887324
URL: http://41.216.189.236/nz/debug
URL Status:Offline
Host: 41.216.189.236
Date added:2026-07-16 20:38:32 UTC
Last online:2026-08-05 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-07-16 20:39:21 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:19 days, 4 hours, 38 minutes Bad (down since 2026-08-05 01:17:51 UTC)
Tags:elf mirai link opendir ua-wget x86

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-04n/aelf 5a4558e1508d061e8c5630cc9422e8f539cafb293334cc72548d688ee00eef72n/aMirai
2026-07-25n/aelf 94a215e9e42566c87dee27722105454a973ced213bb2e53463ef6b8d9ea85117n/aMirai
2026-07-24n/aelf 6ebe91a5964c3e0c2b1c3ffd77e7f6e68b478ba9e0e363735c2c027c670cdf5cn/aMirai
2026-07-22n/aelf c2b5b5e89743138ede8b44ac7d781def88b897a4290d98021152a95aac6ee886n/aMirai
2026-07-21n/aelf b8faa0f22efdd6406077dd9ae5b7b0946c2fa3986f3dfa6a82a1a6a1253e2285n/aMirai
2026-07-17n/aelf e899c163318892d3d121b80e85b53c4b2d6361a27820b921a11d825413d457a4n/aMirai
2026-07-16n/aelf 48be86fcef86046be0828fe3ad6df34b7ed1657fd75ccb25bdbce4d6f195b610n/aMirai