🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://2.196.128.59:36852/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry



ID:1054195
URL: http://2.196.128.59:36852/Mozi.m
URL Status:Offline
Host: 2.196.128.59
Date added:2021-03-08 09:50:07 UTC
Last online:2021-03-09 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2021-03-08 09:52:14 UTC to abuse{at}telecomitalia[dot]it)
Takedown time:17 hours, 5 minutes Good (down since 2021-03-09 02:57:20 UTC)
Tags:elf Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-03-08n/aelf 03b73cdaf3e69f5164933948728ab617fe0092382232baa7e09310e1ff1c4a48Virustotal results 34.43% 
2021-03-08n/aelf 00e3e7a0fd74bda0b4ad506d18f14a2491061918d31eaf7230f626c1998fa8fbVirustotal results 28.81% 
2021-03-08n/aelf ffc79c3e3cc01cea57cf8d6c3e16360a02a785e3121d5d0905c42d3ab9ff26d7Virustotal results 21.31% 
2021-03-08n/aelf ca91fafdab85f1249da7694918d09720d73b0b5e7706c83c0e3a762f3c64dd6dVirustotal results 26.67% 
2021-03-08n/aelf 475aad916cf4815f985cd89e85034f52a84a8904ac12aa6efe6bd0fcffc7b44bVirustotal results 23.81% 
2021-03-08n/aelf dce150973f0e0729bc55c9409dca3ed08741b6ccc2f3c1d0290e99ee5dd28d38Virustotal results 45.16% 
2021-03-08n/aelf 2e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6Virustotal results 64.52%