URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.139.81/hiddenbin/boatnet.arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3807135
URL: http://176.65.139.81/hiddenbin/boatnet.arm
URL Status:Offline
Host: 176.65.139.81
Date added:2026-03-28 17:48:11 UTC
Last online:2026-04-13 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-03-28 17:49:11 UTC to abuse{at}stormindustries[dot]llc)
Takedown time:15 days, 23 hours, 29 minutes Bad (down since 2026-04-13 17:19:00 UTC)
Tags:arm elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-07boatnet.armelf 3e28ee17d8fe296bca2cb5929d25520f30d4e2fd3c965b8f2218fcd5a7e766bdn/aMirai
2026-04-05boatnet.armelf 3332abdd15cbfc0659862b78c40d962a95bde4a611980b4341cbceec07528b9fn/aMirai
2026-04-04boatnet.armelf 9913afbed6d45a489c7962cf5acb83a286889fb082880b8acfea9ca3e4c5accdn/aMirai
2026-04-04boatnet.armelf 5427edd231beb33e66ab7b5993d1a70587d2f7d042306a60211b56af44f82380n/aMirai
2026-03-28boatnet.armelf 2dbcb1f89b1cf40138111aac45ad3f9273c4a8a92239bd83a30044c6dbb555b0n/aMirai