URLhaus Database

You are currently viewing the URLhaus database entry for http://41.216.189.236/nz/nz.i686 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3887334
URL: http://41.216.189.236/nz/nz.i686
URL Status:Offline
Host: 41.216.189.236
Date added:2026-07-16 20:38:33 UTC
Last online:2026-08-04 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-07-16 20:39:26 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:18 days, 23 hours, 49 minutes Bad (down since 2026-08-04 20:29:16 UTC)
Tags:elf mirai link opendir ua-wget x86

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-04n/aelf 2e950123f342b6804cf16ddc35349d46597a7021ee2638668deefa28828de6e5n/aMirai
2026-07-25n/aelf 35e65699806a4726c50d1d28c5cb3f0afaf4ac1df109a9259b99c18cdb76c6f3n/aMirai
2026-07-24n/aelf d4422ae2578d764361e6b38c3ef4ba22663f3328ab958b785e5ab75672017daen/aMirai
2026-07-22n/aelf fa210b795422f3f17e7c3c17552c985a31142ef6ac015bc7a666aee80dc6b99an/aMirai
2026-07-21n/aelf 2d1e9c6afa3bcb327bdb9edaca055723e8b1f61f62d3f013d94c304aad396204n/aMirai
2026-07-18n/aelf 35866c8dd804e5c6cdadceef84051cd22dae0156a5719877d5447cf08bda137en/aMirai
2026-07-17n/aelf 61eb8e47031b9c5ac19f887926f3a03604ae1dec521dad76db3136a1469be7b6n/aMirai
2026-07-16n/aelf 5ea3509f840f6cc8b36e4930c7f6514253c3be358c7f83683c021d51fe6a2b97n/aMirai
2026-07-16n/aelf b8f0cd29f437c39f1eef27cb098a2b1d53af4fd895ad101d589a013eedd08f3cn/aMirai