URLhaus Database

You are currently viewing the URLhaus database entry for http://36.49.57.65:39728/Mozi.a which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2484633
URL: http://36.49.57.65:39728/Mozi.a
URL Status:Offline
Host: 36.49.57.65
Date added:2022-12-24 02:20:07 UTC
Last online:2022-12-25 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2022-12-24 02:21:09 UTC to 18943124057{at}189[dot]cn)
Takedown time:1 day, 16 hours, 29 minutes Poor (down since 2022-12-25 18:50:51 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-25n/aelf 75c17d9dbe32e3e13d36c941f9a517e8321669b754501cab6e9254683e2f5ad1Virustotal results 51.67% 
2022-12-25n/aelf 7aa992101c84b84a94054a209f0721d11516477d8c7a57c5ae786f1596e9264eVirustotal results 38.10% 
2022-12-25n/aelf d017186e6e703670b41ae44e4351959237fa50c220d176a7e25ed9d64d8f87aaVirustotal results 60.66% 
2022-12-25n/aelf bf2cccca1958a5aaf23bba0396c77be4e102c313e37c6fbc5d625d1ed576ad5fVirustotal results 57.38% 
2022-12-25n/aelf 0d9c645f783b7be73814fdfc7d330195773260a945d56a26aaa52678d26c6cafVirustotal results 62.90% 
2022-12-25n/aelf a8f65950f6df648f3802b807412fba1d1f15edc44c6d1218ed16e4b2d285f7cfVirustotal results 40.32% 
2022-12-24n/aelf 6b284ea2f2ea14efc8d680695891ca694361ab035ea869ae0be615f5c54992f7Virustotal results 47.46% 
2022-12-24n/aelf b2b7e78893bd2c51a69aab1e5a58b4e62706dfa18d840e52be19aaa582f735a7Virustotal results 44.26% 
2022-12-24n/aelf 09869760766dba8f98d326710444ae3fd33ee21147f63d275a95e8752eabc0a0Virustotal results 37.70% 
2022-12-24n/aelf 557a0d82baccdf975830d03ae4050315e2817bfd9d5438b4906b8f2e4cdf188aVirustotal results 59.68% 
2022-12-24n/aelf 96e6cbf452372d1b26772151fd85ddddbe19d3964eec5a054be7f8940e5bfc26Virustotal results 38.71% 
2022-12-24n/aelf 63551601e564aab7e37f483a77b99faa313de2a7acd3bea85cf97762b38f3a24Virustotal results 60.00% 
2022-12-24n/aelf 9f41c5d998f23df4ba83a191810fc30f145546ee88236e777f195ba5f6712e14Virustotal results 61.29% 
2022-12-24n/aelf a2ea9dca175aafb4a96867ffc76cfef84f4cddef82fd2cece61dd1cf535335fbVirustotal results 37.10% 
2022-12-24n/aelf 12013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efVirustotal results 76.19%Mirai
2022-12-24n/aelf 52295413639630d0accebd95bb066e7a5e43165c5caf8f7f11689f122c221b26Virustotal results 43.55%