URLhaus Database

You are currently viewing the URLhaus database entry for http://180.232.106.164:1981/Mozi.a which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2496368
URL: http://180.232.106.164:1981/Mozi.a
URL Status:Offline
Host: 180.232.106.164
Date added:2023-01-04 07:36:06 UTC
Last online:2023-01-13 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2023-01-04 07:37:04 UTC to ipnetworks{at}etpi[dot]com[dot]ph)
Takedown time:8 days, 23 hours, 43 minutes Bad (down since 2023-01-13 07:20:56 UTC)
Tags:elf Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-01-12n/aelf 0d4c97dd99d8c1544f3b91095caff59cdea168a82c42b456909d8dcba93f9771n/a 
2023-01-12n/aelf 3a63d3b7432d806cf40fe764265219243b397b0748d02f6093f988c161a51d31Virustotal results 35.00% 
2023-01-11n/aelf df08b50ae1cf428b74e5deaa1896c66f0b19d3d399bc0e7b11cdb54aa09b4c32Virustotal results 45.90%
2023-01-10n/aelf fac304cd1e585eb8ff37f87dd9b232edde171204a9870257dcee1bc0deb4717fVirustotal results 63.49% 
2023-01-08n/aelf fd851655a0cc12da68cc0a81320476fb69a4a00835b5ad7341b55ea36f2cdbf7Virustotal results 40.98% 
2023-01-07n/aelf a5cae1a63747e60ed69d3a522d889beda4514014f06c7a33868eef217c45ccdcVirustotal results 45.76% 
2023-01-06n/aelf d7ac7aece9743a9256b9fd0084e18fbd7e05a8d25a562cea2878b3de64cae876Virustotal results 54.10% 
2023-01-05n/aelf dc3906b6cf2e391537c1dfb599b3e5c0d58cccb3ed8b942cb1bcb064413b93e0Virustotal results 22.95% 
2023-01-04n/aelf 4293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7Virustotal results 71.43%Mozi