URLhaus Database

You are currently viewing the URLhaus database entry for http://5.42.217.111/hiddenbin/boatnet.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3616670
URL: http://5.42.217.111/hiddenbin/boatnet.mips
URL Status:Offline
Host: 5.42.217.111
Date added:2025-09-03 15:58:16 UTC
Last online:2025-09-07 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2025-09-03 15:59:12 UTC to amir[dot]ixi{at}gmail[dot]com,tehrangaming7{at}gmail[dot]com)
Takedown time:3 days, 11 hours, 22 minutes Bad (down since 2025-09-07 03:21:15 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-06boatnet.mipself 921f5a12ca0a4f7a4b15004f9052a83fa649ac429517f658bcf4f727a847a680n/aMirai
2025-09-06boatnet.mipself 28a9a11d15c40f5834f0c9376239a3ee9437b17f50ab53e3f4f7c3adbe20df17Virustotal results 27.69%Mirai
2025-09-06boatnet.mipself a1d8b087766e142534f688c4a54e33214f55e1611bbe3ea5c70e3bdf1620b331n/aMirai
2025-09-05boatnet.mipself 4ec7e93ebe2be871098443bd8ed966bf7558abc6b4515c7bf4e5278e60484239n/aMirai
2025-09-04boatnet.mipself 5bfb472619635774ba16f49cb2dd91bc2ebf0fbf4a98676c7d4632cf7429c118Virustotal results 28.12%Mirai
2025-09-04boatnet.mipself d3ad1cacc36f155f254c8aab9aab47eac2f87992121280af82a2ecbac24abec5n/aMirai
2025-09-03boatnet.mipself 145da09a099e8ed5e51043e11da207f5d32ee091cd83303b1de14d844a4d90c0n/aMirai