URLhaus Database

You are currently viewing the URLhaus database entry for http://221.160.177.197:4893/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:311665
URL: http://221.160.177.197:4893/Mozi.m
URL Status:Offline
Host: 221.160.177.197
Date added:2020-02-08 16:04:36 UTC
Last online:2020-02-10 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2020-02-08 16:06:10 UTC to irt{at}nic[dot]or[dot]kr)
Takedown time:1 day, 21 hours, 20 minutes Poor (down since 2020-02-10 13:26:13 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-10n/aelf ad165ff847a02b580f285c4b781e927d29fc25ef1392013fb1e8efeefee0f4edVirustotal results 10.17% 
2020-02-10n/aelf 5b2d15268ce1a5be7a59e6c95e5f86d6f1e329370aaf18d740c9815e9b192072Virustotal results 24.14% 
2020-02-10n/aelf 815152819e5870fc64db8aeebc082b7cb040f33a9f0dfb77ccf7e66aa4e124cfVirustotal results 10.17% 
2020-02-09n/aelf 84622f69e6e17bca985f6f0e884c52226ce066b0703112ba9b5b46c97e183313Virustotal results 11.86% 
2020-02-09n/aelf 04d3c795fda93e62dece167ced6456fe3ea4409640218f859953c0a4b41b65eaVirustotal results 25.00% 
2020-02-09n/aelf 80bb5cf82fe5629e442fb3e51101d64a3b9171c01e254e67bef0cc00822a3d4aVirustotal results 50.00% 
2020-02-09n/aelf abff72353f8304f04493d83b4a56a00741b461014dde3422f10cfbd135b98768Virustotal results 37.93% 
2020-02-09n/aelf 82267baa5ec4fca4f39ec61d85aae8f90e92ccba821b9ce92d74804127e1bf71Virustotal results 10.00% 
2020-02-09n/aelf 056bee90c9ee92b6213c3442b965367ff5927d82026188f1319d92fbb58b30f9Virustotal results 25.00% 
2020-02-09n/aelf d01f12fd0696223bf16e40a4e76180ead81815b861a335ba05776a5ec759af50Virustotal results 8.33%
2020-02-09n/aelf d9b497cae877d5657ac01d54b941f5f452e252c02698d1db8edddc1456de540cVirustotal results 8.33% 
2020-02-08n/aelf edcb64c316d01f48fc92367c6716d1d7516197b65f628637ca49d0370cfbfd89Virustotal results 34.48% 
2020-02-08n/aelf e3ee24ce5e90ceeeb100163ae760ffa77844bbf8c37de87fed1840c5fe2404abVirustotal results 33.33% 
2020-02-08n/aelf b9148379ed5d8a4b8ad58ec9f2e755ddef9d90a16522c7df00702ae73272a6f8Virustotal results 23.73% 
2020-02-08n/aelf c2481fa7a1c3d2310a8119c8081466b84e9636994af76d6ec3f935b2e4e3e711Virustotal results 23.73% 
2020-02-08n/aelf e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0Virustotal results 61.02%Mirai
2020-02-08n/aelf 084ab317f916d03022ea12b7009540a0b799b987c7c41003d97d4414f3b82bd9Virustotal results 24.14%