URLhaus Database

You are currently viewing the URLhaus database entry for http://177.56.145.34:41104/Mozi.a which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:613324
URL: http://177.56.145.34:41104/Mozi.a
URL Status:Offline
Host: 177.56.145.34
Date added:2020-09-26 11:52:07 UTC
Last online:2020-09-29 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-09-26 11:54:02 UTC to abuse{at}lacnic[dot]net)
Takedown time:3 days, 4 hours, 26 minutes Bad (down since 2020-09-29 16:20:17 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-29n/aelf 1047d7ed437b93cdf606fbe7a221e1b02749643dd0564ac1b45ab93f786ba409Virustotal results 19.67% 
2020-09-29n/aelf 53e6c6c9c94a201dfd04d1ac47401cdb032bdb520f019fa333946383be97f41an/a 
2020-09-29n/aelf b9e463d9e5888c29ec9ff899409ed4a85f9d976f3b79bd039e46756ed11c8b31n/a 
2020-09-28n/aelf a5cbb1559a23a9e526d2f6dd8ce69889e3ecc545bea51ddb377e5b3b4794bdafn/a 
2020-09-26n/aelf 71afe1104b5e1bc020dcc7a4db22fda6a09b0149cc1a842d148f652923ef1b27n/a 
2020-09-26n/aelf 9e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600Virustotal results 54.24%Mirai