URLhaus Database

You are currently viewing the URLhaus database entry for http://41.216.189.236/nz/nz.x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3887335
URL: http://41.216.189.236/nz/nz.x86
URL Status:Offline
Host: 41.216.189.236
Date added:2026-07-16 20:38:33 UTC
Last online:2026-08-04 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-07-16 20:39:26 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:18 days, 23 hours, 32 minutes Bad (down since 2026-08-04 20:12:10 UTC)
Tags:elf mirai link opendir ua-wget x86

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-04n/aelf cf195238e84657ceff9c507fbbcfd8cb435e534fcaca3927974d7b554de86a7cn/aMirai
2026-07-25n/aelf 84ef2bc2bd5bce94bb909d9fa21c7192acc199e9d8a07e1b9419584638b10354n/aMirai
2026-07-24n/aelf 9f6476d569eb59de3436b98b4001177b1b8cf4c723f9b23f7917eaec4de09ba9n/aMirai
2026-07-22n/aelf 3eab3901798ec748895b2dca4b8762aec553d2966112999c60061d4599b599a0n/aMirai
2026-07-22n/aelf 18cbee63748bff047d7d51ebc934409f8cb3ba1ea814daae638122272de1a314n/aMirai
2026-07-21n/aelf ae764a11e5a7aa0b064846590708a01c7541c73f50ced0637fcb7b786b196303n/aMirai
2026-07-18n/aelf 7243738e2b27922cd5daed7bb1e9382e87196583976c7a54372f2f149eec3596n/aMirai
2026-07-17n/aelf e8c0c3b714243b977d7279d191686a355c2ef73bcda1dbbca1c4f751f33c2286n/aMirai
2026-07-16n/aelf 014fa0812d1eafc22732693850ac47494b065600e5f46100b1e8a5e218d065cen/aMirai