URLhaus Database

You are currently viewing the URLhaus database entry for http://210.97.42.217:1756/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2884476
URL: http://210.97.42.217:1756/Mozi.m
URL Status:Offline
Host: 210.97.42.217
Date added:2024-06-12 05:49:08 UTC
Last online:2024-06-22 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2024-06-12 05:50:12 UTC to irt{at}nic[dot]or[dot]kr)
Takedown time:10 days, 8 hours, 19 minutes Bad (down since 2024-06-22 14:09:47 UTC)
Tags:elf Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-06-20n/aelf 37a46c2b4715d5b600b43a4d4a67269e0eb5f501f3ee76e0f3440ab125b7d93eVirustotal results 44.44% 
2024-06-20n/aelf af413f5f22f2245f433736c3f2d296a990188ec83d741a1646d9fb96e77a5843Virustotal results 33.90% 
2024-06-17n/aelf fd851655a0cc12da68cc0a81320476fb69a4a00835b5ad7341b55ea36f2cdbf7Virustotal results 40.98% 
2024-06-17n/aelf 29ae75e97b319fd84aaac3b5a9a3ee7dd9d9d54b67d48502c0fb7b355a206dbdVirustotal results 52.46% 
2024-06-12n/aelf 4293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7Virustotal results 71.21%Mozi