URLhaus Database

You are currently viewing the URLhaus database entry for http://218.21.170.20:41744/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:340709
URL: http://218.21.170.20:41744/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1
URL Status:Offline
Host: 218.21.170.20
Date added:2020-04-15 09:39:04 UTC
Last online:2020-04-18 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-04-15 09:40:02 UTC to hqs-ipabuse{at}chinaunicom[dot]cn)
Takedown time:2 days, 19 hours, 46 minutes Poor (down since 2020-04-18 05:26:39 UTC)
Tags:bashlite elf gafgyt link mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-04-17n/aelf 9a5e2f04ac0fb99a7e4af61a822e81b9ad8f42ef272cc436f788ea606936a50eVirustotal results 33.33% 
2020-04-17n/aelf d6c987a553898a1437dde9d2e7ef684de1d4817d9ef05b438b3d1647a6c3a236Virustotal results 35.00% 
2020-04-17n/aelf 37d69c8e4c05c5eabbd6197faf159b1e626a8a49e3e57097d5b4e26961eabb75Virustotal results 35.00% 
2020-04-17n/aelf ca5d93efe5580ceb0b3406238331bff0228d4db7116a84e49549204c38360e50Virustotal results 27.12% 
2020-04-17n/aelf f682505664f9bcb52ffa5f5c8a46c8e1751e8e4070af8c77abc715d32969b795Virustotal results 35.09% 
2020-04-16n/aelf 84622f69e6e17bca985f6f0e884c52226ce066b0703112ba9b5b46c97e183313Virustotal results 48.33% 
2020-04-15n/aelf 82267baa5ec4fca4f39ec61d85aae8f90e92ccba821b9ce92d74804127e1bf71Virustotal results 42.37% 
2020-04-15n/aelf 539b101f26e71c5fb780100b89f09a6f55dc47fc7fc3585d6d02b12f050cb803Virustotal results 36.67% 
2020-04-15n/aelf 95d63f9c2f8e7e7d8225fa952fb3725350380a22e505d1b72250b2ec97c0f702Virustotal results 36.21%
2020-04-15n/aelf e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0Virustotal results 53.66%Mirai