URLhaus Database

You are currently viewing the URLhaus database entry for http://89.32.41.64/hiddenbin/boatnet.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3632982
URL: http://89.32.41.64/hiddenbin/boatnet.mips
URL Status:Offline
Host: 89.32.41.64
Date added:2025-09-27 09:01:12 UTC
Last online:2025-10-01 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: threatquery
Abuse complaint sent (?): Yes (2025-09-27 09:02:12 UTC to abuse{at}hostmaze[dot]com)
Takedown time:4 days, 1 hours, 3 minutes Bad (down since 2025-10-01 10:05:17 UTC)
Tags:32-bit elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-30boatnet.mipself 7859535218f3770a9020ae89d64a1e98cc5f87af985d77dafd412ef897170ae1Virustotal results 39.06%Mirai
2025-09-30boatnet.mipself f58cebb5446803d63905aea9a15534b8cd1a10db86e77c27cda6034a030b2cb2Virustotal results 37.50%Mirai
2025-09-29boatnet.mipself 72273e561e71e1e1ee930eda776b696b67bb33e92326b34010bb26cb6d40a4f2n/aMirai
2025-09-28boatnet.mipself 21ebe0734ea7fdebdd74926f77a33710757d81fb949e251c13424116f4dce30bn/aMirai
2025-09-27boatnet.mipself c5a82a5608238ef3fa9eb9c2b6abfd012fcf11771d62304500ca47f7ea0df903n/aMirai
2025-09-27boatnet.mipself 8e059ff38bb6315ccc7317a90b2f7a7fc3358e72bccae13b6476e3446affe6cen/aMirai
2025-09-27boatnet.mipself 87b56b160c019483077363761dcc95a0a2da54b0378ff0d813ebd1147cfe744bn/aMirai