🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://125.113.205.172:55349/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry



ID:2473629
URL: http://125.113.205.172:55349/Mozi.m
URL Status:Offline
Host: 125.113.205.172
Date added:2022-12-19 22:05:12 UTC
Last online:2022-12-23 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2022-12-19 22:06:10 UTC to antispam{at}zjnoc[dot]hz[dot]zj[dot]cn,antispam_jh{at}zjnoc[dot]hz[dot]zj[dot]cn)
Takedown time:3 days, 21 hours, 31 minutes Bad (down since 2022-12-23 19:37:27 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-23n/aelf a8d2d43268549f9d6bcff64115ac75ef7ae4c9ab1c8760ea94285bea39a58a1aVirustotal results 61.02% 
2022-12-23n/aelf c2ec9c514b4316a60aa64af396ac91b0767589bab133ebec913941ce6bec3aefVirustotal results 42.37% 
2022-12-23n/aelf 9c3fea5bf183a6c090220daa6b512065faffc83e5a84768b46b9249922672466Virustotal results 37.29% 
2022-12-23n/aelf 6a2364b6d3fdedead1181e753bd722af6a26fb7abdf50db455a205fe17599dbfVirustotal results 37.10% 
2022-12-23n/aelf 06e177ea69dfc04584a4607141cd42754a145ea00c88494d1c7905481a9b14f1Virustotal results 38.33% 
2022-12-19n/aelf 12013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efVirustotal results 76.19%Mirai