URLhaus Database

You are currently viewing the URLhaus database entry for http://89.32.41.64/hiddenbin/boatnet.x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3632978
URL: http://89.32.41.64/hiddenbin/boatnet.x86
URL Status:Offline
Host: 89.32.41.64
Date added:2025-09-27 09:01:12 UTC
Last online:2025-10-01 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: threatquery
Abuse complaint sent (?): Yes (2025-09-27 09:02:12 UTC to abuse{at}hostmaze[dot]com)
Takedown time:4 days, 7 hours, 13 minutes Bad (down since 2025-10-01 16:15:27 UTC)
Tags:32-bit elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-30n/aelf 547e40db9112c994302969d750d45e08661f2cda1473d2afb6ccc3d2621187b7Virustotal results 41.54%Mirai
2025-09-29n/aelf 6dd0f9bff7f57773ed0bc0adf0e3366f45727f1b389ab5cb5e798f85e48d1d9fn/aMirai
2025-09-29n/aelf 594e34e415367d689c2309ef4f0bcdee5d1c65db8fe3abf186950cdc793d2bf9n/aMirai
2025-09-28n/aelf 6b43adc30c8a81c11efb6cd3c42f41eb923626bd3e95c2cb5cec7d6cbfec34c1n/aMirai
2025-09-27n/aelf fb244a580b81ec6dba96a01d60c56b7e9ee2bf1896fdfd171f10620a54bccba3n/aMirai
2025-09-27n/aelf c464a15540f6d7700fa7cb88f28f5046c7fd1637b43d79dfa970bfb099f21e5an/aMirai
2025-09-27n/aelf d88a01b5fb9b8e1ad1af6f807e8127ca2f954a7c66f8a4be0ede64f3366b3e74n/aMirai