URLhaus Database

You are currently viewing the URLhaus database entry for http://89.32.41.64/hiddenbin/boatnet.arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3632979
URL: http://89.32.41.64/hiddenbin/boatnet.arm6
URL Status:Offline
Host: 89.32.41.64
Date added:2025-09-27 09:01:12 UTC
Last online:2025-10-01 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: threatquery
Abuse complaint sent (?): Yes (2025-09-27 09:02:12 UTC to abuse{at}hostmaze[dot]com)
Takedown time:4 days, 7 hours, 17 minutes Bad (down since 2025-10-01 16:19:40 UTC)
Tags:32-bit elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-30n/aelf 6b55f1e89a6eb1126c2f20c23613997922c0e86c54c92f2a448b15441a5ffe00Virustotal results 37.50%Mirai
2025-09-29n/aelf b2bcddc562e52344aad1e97919d727fcfdc79001ee84f5f923285ce99ffefdeen/aMirai
2025-09-29n/aelf f5e67bf0dd16a97fc53fbb7cd8e808513ebb162ea140d2807c0de36e608bc8e0Virustotal results 42.19%Mirai
2025-09-28n/aelf a832d2739bdde6d57d449bee5a1069a50b87ef6cedf29eff3778a7f3c4e891aeVirustotal results 48.44%Mirai
2025-09-27n/aelf 67c7496c30d8ab07b9b51dfa997acbd77425a88bb1e339ba63551174997e4247n/aMirai
2025-09-27n/aelf 2770f56ef612dad7bbd43a762e0e0b7759f54c3a74b7119d2fd995f6abbef3bfn/aMirai
2025-09-27n/aelf fc323bfc1b5586851ddccd59a1d2e8c3e35aabad47bc40ce87f83ad0af02f37an/aMirai