URLhaus Database

You are currently viewing the URLhaus database entry for http://221.160.177.162:3683/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:317029
URL: http://221.160.177.162:3683/Mozi.m
URL Status:Offline
Host: 221.160.177.162
Date added:2020-02-21 14:07:42 UTC
Last online:2020-03-02 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2020-02-21 14:08:08 UTC to irt{at}nic[dot]or[dot]kr)
Takedown time:9 days, 21 hours, 41 minutes Bad (down since 2020-03-02 11:49:24 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-22n/aelf 1e7ca3e32d11f96a8b112175973a0869f16449077365f7a51bb09b4d3375861aVirustotal results 35.00% 
2020-02-22n/aelf d9b497cae877d5657ac01d54b941f5f452e252c02698d1db8edddc1456de540cVirustotal results 35.59% 
2020-02-22n/aelf d01f12fd0696223bf16e40a4e76180ead81815b861a335ba05776a5ec759af50Virustotal results 36.67%
2020-02-22n/aelf 056bee90c9ee92b6213c3442b965367ff5927d82026188f1319d92fbb58b30f9Virustotal results 37.29% 
2020-02-22n/aelf edcb64c316d01f48fc92367c6716d1d7516197b65f628637ca49d0370cfbfd89Virustotal results 34.48% 
2020-02-21n/aelf 9e6625a5884d8c7fc2b6b17f57ef246de6efc65c839b8f76e8753e3b00926f0eVirustotal results 35.00% 
2020-02-21n/aelf 2e1a8054c5a8cca472a377cbb33c7c115b12831c24c4e523d3c59732ccc028d8Virustotal results 35.00% 
2020-02-21n/aelf e3ee24ce5e90ceeeb100163ae760ffa77844bbf8c37de87fed1840c5fe2404abVirustotal results 41.67% 
2020-02-21n/aelf e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0Virustotal results 63.16%Mirai