🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://213.232.114.14/nokillbins/ext4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3917338
URL: http://213.232.114.14/nokillbins/ext4
URL Status:flame Online (spreading malware for 24 days, 10 hours, 56 minutes)
Host: 213.232.114.14
Date added:2026-09-16 09:38:20 UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-09-16 09:39:14 UTC to report-abuse+xtom{at}virmach[dot]com)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-10-07n/aelf 775f9ff2d3638bebe23f14dc3ad99385f0fbd9186322c6309b27f0104c22aa6en/aMirai
2026-10-06n/aelf d962b904fc789b59367cf25adbb3b25f0ec9573d6949a32a703bbd07cfa38785n/aMirai
2026-10-05n/aelf 4cb65e768b01a50d5ab2a2aaeeca1e8c6d8114fee3ef37cc558bd31425c243fdn/aMirai
2026-09-17n/aelf 50de020141a5b3d05ae59292febbe597cebc7fc216f15789eca40f4ccdcd1e6dn/aMirai
2026-09-16n/aelf 23af64b9036dfc3362a841ae657ae35599f5ec29d3d6a014e472952796ebd23fn/aMirai