URLhaus Database

You are currently viewing the URLhaus database entry for http://87.248.130.35/hiddenbin/boatnet.mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3606349
URL: http://87.248.130.35/hiddenbin/boatnet.mpsl
URL Status:Offline
Host: 87.248.130.35
Date added:2025-08-19 02:09:18 UTC
Last online:2025-08-31 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-08-19 02:10:12 UTC to abuse-208161{at}tana[dot]ir)
Takedown time:12 days, 18 hours, 1 minutes Bad (down since 2025-08-31 20:12:09 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-28boatnet.mpslelf 59133721df19c0f3a98427cb0488ae138aa57a72f5dd5bd93c0c04f8ce898f1cn/aMirai
2025-08-25boatnet.mpslelf 7a37239b0c787841589df43c890c9a7d829c8525cba3259cb086ef7461c9ea71n/aMirai
2025-08-25boatnet.mpslelf 3bdb16fc8bb1e5f2019cd7f43361de43f05cd5b3d7db0a3f9fe2583d63799364Virustotal results 31.25%Mirai
2025-08-21boatnet.mpslelf 85d66166c05c89199137c2c2fa650de843ab151a5df7f7eed7ab21278b0ab802Virustotal results 30.16%Mirai
2025-08-21boatnet.mpslelf 8e493a356c577ab2c6ffc31feaf1ca500f4562ebf620637c6bbb664861deab43n/aMirai
2025-08-20boatnet.mpslelf 5a110561e3893d6e60a60fb3437eb34a1436cdf1cb5b98cd6bfccecc9180476an/aMirai
2025-08-19boatnet.mpslelf ceb9f702a8fe268c72705b8ce83e6f0495ed2b3b07980152b496fc260dc3b36cVirustotal results 33.33%Mirai
2025-08-19boatnet.mpslelf fa0edd62b01c59bf0444951ea80b00e5a3d38c5be389fa68b4a89c0eeecf2c33n/aMirai