URLhaus Database

You are currently viewing the URLhaus database entry for http://115.56.113.61:42396/Mozi.a which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1069179
URL: http://115.56.113.61:42396/Mozi.a
URL Status:Offline
Host: 115.56.113.61
Date added:2021-03-15 16:34:13 UTC
Last online:2021-03-22 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2021-03-15 16:35:15 UTC to hqs-ipabuse{at}chinaunicom[dot]cn)
Takedown time:6 days, 8 hours, 23 minutes Bad (down since 2021-03-22 00:59:04 UTC)
Tags:elf Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-03-20n/aelf 9d4edba4062789c524d936bd785c6561c8035c8a776c330fa932d36e8f3acd6dn/a 
2021-03-18n/aelf 124faca4274c37a5bea61fb5ed38cbf355da9d5a16aef2374fc74e042715274cn/a 
2021-03-18n/aelf e237f358e0ab26a53f7acca1f1186cbdee112dd5046a0acdf6dd941789f795edn/a 
2021-03-18n/aelf 0243cef9b92b6ae08a66fdb8fb420a9b98a5edcf0afda200f4fa7052f81ca63fVirustotal results 54.10% 
2021-03-18n/aelf fa52ccd911a922cf6ed082c1f6a8ad010b5d838699303e0a7b30bf8c147ea40cn/a 
2021-03-17n/aelf 7625ee5a8a772ae6702357aa2ac236e564db1d82203c060bde26896a8973167bn/a 
2021-03-17n/aelf 70fc909d6076d5546af708b65452255651b1e232205d4509b5f3988ad9032fb5n/a 
2021-03-17n/aelf 1bff1d9005947904f4445c2ea0cc83b47fc948e3a7629553394361e8ce89c2f4Virustotal results 54.84% 
2021-03-15n/aelf 981ccd2b9c75ec00365f44f70263fb9e6df4e035a426e8d355d31077bf66d08aVirustotal results 63.93%