URLhaus Database

You are currently viewing the URLhaus database entry for http://213.209.150.107/hiddenbin/boatnet.arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3547858
URL: http://213.209.150.107/hiddenbin/boatnet.arm
URL Status:Offline
Host: 213.209.150.107
Date added:2025-05-20 07:25:14 UTC
Last online:2025-09-01 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2025-05-20 07:26:08 UTC to abuse{at}virtualine[dot]org)
Takedown time:3 months, 14 days, 6 hours, 35 minutes Bad (down since 2025-09-01 14:01:32 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-21boatnet.armelf a09bcca1d251ab8a29ba6c7dc4458b5f908f71d8894eee7b4b3b0fad9ee0ab5en/aMirai
2025-08-20boatnet.armelf 7ea46f7eb321860344feebf16ebc57535777e56df0afbe2b9c91f0b1704b6f48n/aMirai
2025-08-13boatnet.armelf 636c8aa8171e117e56d881124f2ac43bc12bf0f825dd1551b31b05882429a868Virustotal results 25.00%Mirai
2025-08-10boatnet.armelf 8f5ee45faf4f162caa3e7c9d9f76fe15bf4acbdf11ce7208c5897defb7465303n/aMirai
2025-05-22boatnet.armelf 8e1f120333c4d56ef3a748358a72dc9991569e13cc7662e78b966badcb7965deVirustotal results 30.00%Mirai
2025-05-21boatnet.armelf 6302210fb73f77590ff0591c737289624ae52a42de1f819b09769e23a8a682e2n/aMirai
2025-05-21boatnet.armelf 4d2aac37a228cacf7d9c238b108f2805d5ab033d1cba5bb7409e7c043f8f561bn/aMirai
2025-05-20boatnet.armelf ff725c391ca7e69e3d17dce3b1767bd074340c864fdbee4402945a15c7e24ab7Virustotal results 28.12%Mirai