URLhaus Database

You are currently viewing the URLhaus database entry for http://123.172.77.197:33991/Mozi.a which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2479402
URL: http://123.172.77.197:33991/Mozi.a
URL Status:Offline
Host: 123.172.77.197
Date added:2022-12-22 07:20:13 UTC
Last online:2022-12-27 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2022-12-22 07:21:13 UTC to anti-spam{at}chinatelecom[dot]cn)
Takedown time:5 days, 12 hours, 37 minutes Bad (down since 2022-12-27 19:59:00 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-27n/aelf 52295413639630d0accebd95bb066e7a5e43165c5caf8f7f11689f122c221b26Virustotal results 43.55% 
2022-12-27n/aelf 12a1e41d13c0603f5a78b1650444816a522695226488f61103a5ac2308f63e6bVirustotal results 29.51% 
2022-12-27n/aelf 2be1da7e8af5b0d01a4e6be73fa655fa3240846974fd9a20050899e58bed811aVirustotal results 62.30% 
2022-12-27n/aelf 9250bcf82966272253564eaffd3d67e573a57964ae21367ade519832ecdccf80Virustotal results 41.27% 
2022-12-27n/aelf 17a2578baa3a9f071a32e35fd946992ae1507a6471f4ad7bc6d24db94f21662fVirustotal results 44.26% 
2022-12-26n/aelf a4d823606fdfaa10b288580d9cfb37a44ee6bfebcc47fe99ea1d01fe181f8cffVirustotal results 42.62% 
2022-12-25n/aelf b36848957a3d3b39036199399009163799dd00bd9cb98ea22fb7a33b891c07beVirustotal results 50.82% 
2022-12-25n/aelf 63551601e564aab7e37f483a77b99faa313de2a7acd3bea85cf97762b38f3a24Virustotal results 60.00% 
2022-12-25n/aelf 8d850d4910e17ed4a27a3e89b299611eb660fe5d682daef5e4044973176eef84Virustotal results 60.66% 
2022-12-25n/aelf 9f41c5d998f23df4ba83a191810fc30f145546ee88236e777f195ba5f6712e14Virustotal results 61.29% 
2022-12-25n/aelf 0bdf03883495f1cf86e34787d9af6ed376cc78815738cd178c4a5c83ba77b061Virustotal results 64.52% 
2022-12-24n/aelf 51169d4adc6e2d73ad07068b098a14565cd88b83a25fae6f1728a77e8797fd8cVirustotal results 62.30% 
2022-12-24n/aelf 6b284ea2f2ea14efc8d680695891ca694361ab035ea869ae0be615f5c54992f7Virustotal results 47.46% 
2022-12-24n/aelf 9225199f6c87b7e2fa4d5c8516e822e8aa3abee3f99fbc388519a804f6b07d59Virustotal results 59.32% 
2022-12-23n/aelf fc46d6971cddda09b32caa15052c3de9540f84b530ee9f406d81ccdbcd88d590Virustotal results 43.55% 
2022-12-23n/aelf 96e6cbf452372d1b26772151fd85ddddbe19d3964eec5a054be7f8940e5bfc26Virustotal results 38.71% 
2022-12-23n/aelf 116f8441904c5d8024765d61d8928c039cfdb89d1503513d40c55d80ac73c159Virustotal results 46.77% 
2022-12-23n/aelf 621374647b43b06ba26cc7c0483e010770befadb3b410126c84ae35c4dcf4e98Virustotal results 48.39% 
2022-12-23n/aelf ebd44df05d1a28b5f6c64101d05cdb2aaaa91b5f4def75e9d57ca77e642a5cd9Virustotal results 55.56% 
2022-12-23n/aelf f2d3195466e53902fac2ac025d6441e625d2efda052efe37a760cd2c317608acVirustotal results 30.65% 
2022-12-23n/aelf d791cfbd8f63f6e4a49bae59cb3336e8a3f1a44eb3876c978c5cbcaef7b5c2a8Virustotal results 54.10% 
2022-12-23n/aelf a2ea9dca175aafb4a96867ffc76cfef84f4cddef82fd2cece61dd1cf535335fbVirustotal results 37.10% 
2022-12-22n/aelf acf33057c6c6ed86e1b1b19768f8f05be32ff7c3088d21917e80e0bac86c7446Virustotal results 51.61% 
2022-12-22n/aelf e62612443715920e204bda790c1eb909fa6fe9934d218a0f3ba284f889fa85eaVirustotal results 54.24% 
2022-12-22n/aelf 12013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efVirustotal results 79.37%Mirai