URLhaus Database

You are currently viewing the URLhaus database entry for http://213.209.150.107/hiddenbin/boatnet.arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3547864
URL: http://213.209.150.107/hiddenbin/boatnet.arm6
URL Status:Offline
Host: 213.209.150.107
Date added:2025-05-20 07:25:15 UTC
Last online:2025-09-02 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2025-05-20 07:26:08 UTC to abuse{at}virtualine[dot]org)
Takedown time:3 months, 14 days, 19 hours, 10 minutes Bad (down since 2025-09-02 02:36:49 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-27n/aelf 32cfb5b86ca51d9d893b645ee54bcd1dfba673913e2d3a93c54dec591fa250b3n/aMirai
2025-08-21n/aelf 8b7946b90b87676f03fe4d6502c6dbaf93f0a6350be23260c7348e462868d75dn/aMirai
2025-08-20n/aelf 1112d1e433a2b844d31ec9aefdb8b22419b8269bce3dfc08ec8f14390d6aa82cn/aMirai
2025-08-14n/aelf c23c067951d29534ef45b29ae460fc566e1e05c41e91d7e699a3302df4ca0c66Virustotal results 25.00%Mirai
2025-08-10n/aelf 0be10f7dbb2e4f0cf092eedd62a0c02abf858afa991c83daca9765516b5ce39en/aMirai
2025-05-22n/aelf 8e6f3f7e127e3ab1c1189ea899bef31792e9c67b20fbcc1440b3f6ac69cd4d82Virustotal results 37.50%Mirai
2025-05-21n/aelf 5656ae17f13354796568438f2a62acaabd0fa3cf29a83aebb8a2dc2f78932014n/aMirai
2025-05-21n/aelf 6c9d3a2c4d632203e08bb867eb7f5c96e0354e0431aa02ed92f69efa66706960n/aMirai
2025-05-20n/aelf 6fa1fad8c805c2c1df3ba8cbd705bc977d0e45d50bf071c04cd87217c8d08065n/aMirai