URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.139.59/hiddenbin/boatnet.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3825899
URL: http://176.65.139.59/hiddenbin/boatnet.ppc
URL Status:Offline
Host: 176.65.139.59
Date added:2026-04-19 11:29:40 UTC
Last online:2026-05-03 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-04-19 11:30:25 UTC to abuse{at}stormindustries[dot]llc)
Takedown time:13 days, 23 hours, 48 minutes Bad (down since 2026-05-03 11:19:02 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-05-02boatnet.ppcelf 3340e282b20981c45c3ceb330ec3a2ae5ed41113ad98c342726e40e951080b94n/aMirai
2026-05-02boatnet.ppcelf d91b809569b907d26762192ec5aec28eaaafa57d73227d4e188a24dab5586b14n/a
2026-05-01boatnet.ppcelf 9c87d54f556642a57393a054a46608accf9a560ee5ab7fbfa22520e001794b2bn/a
2026-04-29boatnet.ppcelf e9577b5eaa0372c7f58bb440f7539b534ec102dd2d6aaae54d750a3c12ef18c6n/aMirai
2026-04-28boatnet.ppcelf 87d0cb7aea86635fa05c97355d72d48feba4672ded22f44c0d79180357e70fd2n/aMirai
2026-04-27boatnet.ppcelf c09f04d11bcbe02a3216a6efe620cd5484fdbcbff5866645d3d6ce461339fd9cn/aMirai
2026-04-24boatnet.ppcelf 8e8b3702eac6143deb8e2641c5731bb8ad6b1eef1985433b1172c7abf55b9393n/aMirai
2026-04-23boatnet.ppcelf bed31d4b0314dd737e0c524b98cab1b456d350a583cb9a9227cb843333a9d78bn/aMirai
2026-04-19boatnet.ppcelf dbfbf959516d69fc3fe2a022e6bb9ee4cb244616cde4b37d8f6ff63d14c20c5en/aMirai