URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.139.81/hiddenbin/boatnet.arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3807143
URL: http://176.65.139.81/hiddenbin/boatnet.arm6
URL Status:Offline
Host: 176.65.139.81
Date added:2026-03-28 17:48:15 UTC
Last online:2026-04-13 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-03-28 17:49:12 UTC to abuse{at}stormindustries[dot]llc)
Takedown time:15 days, 22 hours, 29 minutes Bad (down since 2026-04-13 16:19:04 UTC)
Tags:arm elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-07n/aelf 64c61dde6c042fa3a3216dc5c55368d34f9a4685c71f34be343f94a45bbdd9d5n/aMirai
2026-04-05n/aelf 9e1265682d8a9166b319f1884aa591ac2f3cab345f5a608dfea5cb9543f9ad33n/aMirai
2026-04-04n/aelf 12f96d5034d19f76f8e7d8ad46aecdbc40a0c188e7a3a05725559b2f93326e14n/aMirai
2026-04-04n/aelf 6f6c2d0dd6125510c627812d285b20107ce71c2d76e034fb3b09b27fbd53e142n/aMirai
2026-04-04n/aelf 81631a4f740b8b24e45926f0b36e34aa92491f8bf6cb4ff1a3ff1ebb24ad9112n/aMirai
2026-04-04n/aelf 5396e77599082f88a766be76f1f08148976e8d48276e816963f73acda92d5dc2n/aMirai
2026-03-28n/aelf 51ce0607e266317785f1f7abb0f0684d62a2e41cb292f9dd760cfe73ceabb754n/aMirai