🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://71.204.202.145:42915/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry



ID:1396520
URL: http://71.204.202.145:42915/Mozi.m
URL Status:Offline
Host: 71.204.202.145
Date added:2021-06-25 03:08:05 UTC
Last online:2021-06-25 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2021-06-25 03:09:04 UTC to abuse{at}comcast[dot]net)
Takedown time:18 hours, 6 minutes Good (down since 2021-06-25 21:16:03 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-25n/aelf 8af23c47bfbebd4e0e14df510cf1688ac5587c677a5e66c56792e062794a8ffaVirustotal results 50.82% 
2021-06-25n/aelf 05750406f202cad444a2058092e09cfa910a02e652ca5ea0e5fc38802cd166fdVirustotal results 24.19% 
2021-06-25n/aelf 789e27d0c496f74bddc19ca6d331efd65f21a19e34af892b38d47655614accb4Virustotal results 29.41% 
2021-06-25n/aelf f2d18fbdd7f92fb2ccadefe931b870362e4be24b12dc961ae2ed6b8f59bf6ab6Virustotal results 39.68% 
2021-06-25n/aelf a996ac8e1bbad9e5369dfb5654ff444d52ba6003213e8628db6a915e85619570Virustotal results 34.43% 
2021-06-25n/aelf fad57f59a36e8137de1db3dc9a19e71947cf568178f7be4d35b560e535fea410Virustotal results 31.15% 
2021-06-25n/aelf 12013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efVirustotal results 70.49%Mirai