URLhaus Database

You are currently viewing the URLhaus database entry for http://ntf.mohtash.ir/hiddenbin/boatnet.x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3606379
URL: http://ntf.mohtash.ir/hiddenbin/boatnet.x86
URL Status:Offline
Host: ntf.mohtash.ir
Date added:2025-08-19 03:41:14 UTC
Last online:2025-08-31 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-08-19 03:42:11 UTC to abuse-208161{at}tana[dot]ir)
Takedown time:12 days, 16 hours, 16 minutes Bad (down since 2025-08-31 19:58:46 UTC)
Tags:botnetdomain DEU elf geofenced mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-28n/aelf 8f0e238a567f9ca48b1c4b1a66632fc7b81677cc96cc4dc45bea2f911afede98Virustotal results 27.69%Mirai
2025-08-28n/aelf b7601ae460c59a6b27e283d1fe03a28da342c6b983cc6ad65d4cddc4fad4604eVirustotal results 26.15%Mirai
2025-08-25n/aelf 9a8b01e95eec603f223105880f7451408cd85d18511da46e50611bd0ac59d8fcn/aMirai
2025-08-25n/aelf 8368daeb2afc4f8c433e3d5be3eb2d980172d5865d3c670619fbacc78a6443b2n/aMirai
2025-08-21n/aelf a2a813c51af46d0777aa7204d2b0f9b8b3de24fab7d0ca53ae1af7b513851d1cVirustotal results 29.23%Mirai
2025-08-21n/aelf 7e622c7eacb631ca92021e7fcf73b2b3b9bdb6ad5f617ff4f527b47930dc58faVirustotal results 27.69%Mirai
2025-08-20n/aelf 387a7ee9fd9dfac18b151d9ffe1f4c8272db71d81ad8ff39752d75e4867c5a0cn/aMirai
2025-08-19n/aelf 6f72f3f93423a28a7fb8d6617346d49393518ad3eacba98e2d10fffcb5a76ea1Virustotal results 26.15%Mirai
2025-08-19n/aelf 5b5ac945856ed5aa85f20107d4248a35714792bdb99d166b74b47b0891cd0d05Virustotal results 33.85%Mirai