URLhaus Database

You are currently viewing the URLhaus database entry for http://222.102.252.99:45682/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1220833
URL: http://222.102.252.99:45682/Mozi.m
URL Status:Offline
Host: 222.102.252.99
Date added:2021-05-11 12:54:17 UTC
Last online:2021-06-10 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2021-05-11 12:55:06 UTC to irt{at}nic[dot]or[dot]kr)
Takedown time:29 days, 22 hours, 52 minutes Bad (down since 2021-06-10 11:47:50 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-05-27n/aelf 230f0e9308b51d8825ed7a3df88ffd016defcec9731fc65192fe845968c6c73cVirustotal results 26.67% 
2021-05-27n/aelf 16feffba78c89296e7401ead65556b8294f7b1127d3c87e5ebb2b38c8e4bd2e1Virustotal results 45.00% 
2021-05-20n/aelf 02d54ed69d91dd29f31840e0d52c2081bbb9366b21f6f81dd5fb79502fc4d650Virustotal results 31.15% 
2021-05-16n/aelf 7c617a5d04760d34ee7d2583d8a7ff6fccc8a76288f18cc39f139d789098391cVirustotal results 50.00% 
2021-05-16n/aelf 7b81ed08ace884e9978983b1e497626033664f0b536622dc20558a11a54ffe48Virustotal results 61.29% 
2021-05-14n/aelf e9b44343cf4a0ffaeac3fbc300fda494881093518e8121a025a95aa7e516f782Virustotal results 49.21% 
2021-05-14n/aelf 88faffe027c0061e439bfa89f16385ad9bb58cdf294014046826eb51988399afVirustotal results 63.33% 
2021-05-11n/aelf 5efd5fc2a05050bcc76be326a577849f45ba76d58411a72a0ebe8f861f8d7993Virustotal results 31.15% 
2021-05-11n/aelf 12013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efVirustotal results 73.77%Mirai