URLhaus Database

You are currently viewing the URLhaus database entry for http://89.32.41.64/hiddenbin/boatnet.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3632977
URL: http://89.32.41.64/hiddenbin/boatnet.ppc
URL Status:Offline
Host: 89.32.41.64
Date added:2025-09-27 09:01:12 UTC
Last online:2025-10-01 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: threatquery
Abuse complaint sent (?): Yes (2025-09-27 09:02:12 UTC to abuse{at}hostmaze[dot]com)
Takedown time:4 days, 7 hours, 20 minutes Bad (down since 2025-10-01 16:22:42 UTC)
Tags:32-bit elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-30boatnet.ppcelf 798baf89502e85d53e70925e87eb7b5df4d2aa7fd48195670125ee1245f50489Virustotal results 43.75%Mirai
2025-09-30boatnet.ppcelf 3a1f6bd78e3520762079d53b1271cf2d916767df8bef7ee63efa146ba5dea2aaVirustotal results 43.75%Mirai
2025-09-29boatnet.ppcelf 118b7e1a3f8f2537cf70d411f4df468ac54cba9e6edc5fc28d96c908c489162an/aMirai
2025-09-28boatnet.ppcelf d9e424de9fb7a12a918c93fefb8ed6abd9486524f1cce0c3760ce697b7944b45n/aMirai
2025-09-27boatnet.ppcelf 3488415409fd713007f1bd259a0cebe44ec2056cfeb045f1ae5bbbb7a0704b7fn/aMirai
2025-09-27boatnet.ppcelf 1dd2b3ab5537e57f8a9ad294845b905acbe7483a28c8172af5c1742d53114954n/aMirai
2025-09-27boatnet.ppcelf e8e63d615ba69ad8ef427133cdf28c8d2ee0c571ba3ca45afb7ad18875b3e454n/aMirai