🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://117.36.199.38:59238/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry



ID:1666929
URL: http://117.36.199.38:59238/Mozi.m
URL Status:Offline
Host: 117.36.199.38
Date added:2021-10-11 12:04:05 UTC
Last online:2021-10-17 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2021-10-14 23:50:10 UTC to anti-spam{at}ns[dot]chinanet[dot]cn[dot]net)
Takedown time:26 days, 14 hours, 47 minutes Bad (down since 2021-11-07 02:52:26 UTC)
Tags:mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-18n/aelf f19b00c3bba1526fe01c81153ba3eb3d62ddad2df1adaaf79d222f2dc1d87dedVirustotal results 40.00% 
2021-10-15n/aelf 1e49b8ec32038225595c30fa3336bf91e9c283144d2eecf19a4c00ede2c2f624Virustotal results 45.00% 
2021-10-15n/aelf 19e2d13f6b0fef9f6b09e35b7f3dd08b5f00adaf5d29cbd2ae9e8be04081cd5cVirustotal results 50.00% 
2021-10-14n/aelf d5111609a30c2ee46179783ba79dfd5c539a7c5b285b161443e4511d02f99e61Virustotal results 45.00% 
2021-10-11n/aelf 12013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efVirustotal results 73.77%Mirai