URLhaus Database

You are currently viewing the URLhaus database entry for http://jbrj92scltrbtv7mzejvmovw.duckdns.org/hiddenbin/boatnet.x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3828857
URL: http://jbrj92scltrbtv7mzejvmovw.duckdns.org/hiddenbin/boatnet.x86
URL Status:Offline
Host: jbrj92scltrbtv7mzejvmovw.duckdns.org
Date added:2026-04-22 16:48:14 UTC
Last online:2026-05-01 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2026-04-22 16:49:14 UTC to abuse{at}stormindustries[dot]llc)
Takedown time:8 days, 19 hours, 36 minutes Bad (down since 2026-05-01 12:25:30 UTC)
Tags:botnetdomain jbrj92scltrbtv7mzejvmovw-duckdns-org mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-05-01n/aelf 6e566cd027552388605bfb45d3762c8a8f9f8d09b28ffa63ce36563943863d4cn/aMirai
2026-04-30n/aelf fa78ec177f1a4df84481b652d1bc01c5b4b86d798f1bda4a6eb350ef803ad230n/aMirai
2026-04-30n/aelf 00ebb70b58ae4b760c5c2bd014641b89086ab9545d21d9f257c6b20e1ade8b4an/aMirai
2026-04-29n/aelf 02e54b01bd57ae3d3ca09871a4766b89b032c3e2b4654cf69cbba430854d5337n/aMirai
2026-04-28n/aelf 2ae304f2c1572c7dfdc7828615a4fdfe46d2641c5e2d048ece66ff8a732aa376n/aMirai
2026-04-27n/aelf 296e2cfe4738eee834bc900e70f5c39907dd8d16ae9155c279891e144b31d3a2n/aMirai
2026-04-22n/aelf 95f6d8d8f2b7a9e2982221a6ce8b1d6ad908b42982f425dfe8feb39a81d34d02n/aMirai