URLhaus Database

You are currently viewing the URLhaus database entry for http://jbrj92scltrbtv7mzejvmovw.duckdns.org/hiddenbin/boatnet.x86_64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3828863
URL: http://jbrj92scltrbtv7mzejvmovw.duckdns.org/hiddenbin/boatnet.x86_64
URL Status:Offline
Host: jbrj92scltrbtv7mzejvmovw.duckdns.org
Date added:2026-04-22 16:48:15 UTC
Last online:2026-05-01 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2026-04-22 16:49:15 UTC to abuse{at}stormindustries[dot]llc)
Takedown time:8 days, 20 hours, 0 minutes Bad (down since 2026-05-01 12:49:36 UTC)
Tags:botnetdomain jbrj92scltrbtv7mzejvmovw-duckdns-org mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-30n/aelf f04aad790e7fb7b3cb006f30f74862e0045f12705721db8f044099356b2cb84an/aMirai
2026-04-30n/aelf 7fe57160af3d0340cfb4cb315bd91ac18312222cdbf58bcbc43e4bb544237c52n/aMirai
2026-04-29n/aelf f98139db0ca2cdbe681de3421c2b7b9479ac708b972658996e33a31d285c2746n/aMirai
2026-04-29n/aelf eb6781065e259e6fe2780446c4701bce27f4211de048eea2c8f2a8ca5ed3b34en/aMirai
2026-04-28n/aelf 28682b51c72f1f9f7d7401b1db5ce0cfc5febfaf4f6102ecbd56def8d9a4deafn/aMirai
2026-04-27n/aelf 3fa092682741365d3704f8692f28e19d890c8d4bc76bca53e23cd874ed09897cn/aMirai
2026-04-22n/aelf 2d087a3663d5c325e9884ace959da019ea2c51509389733a08602de18f41ff0en/aMirai