URLhaus Database

You are currently viewing the URLhaus database entry for http://187.26.44.105:38123/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:645951
URL: http://187.26.44.105:38123/Mozi.m
URL Status:Offline
Host: 187.26.44.105
Date added:2020-10-03 15:38:56 UTC
Last online:2020-10-09 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-10-03 15:40:04 UTC to abuse{at}lacnic[dot]net)
Takedown time:5 days, 12 hours, 13 minutes Bad (down since 2020-10-09 03:53:45 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-09n/aelf 4e14104f0fe7ab6c43a4cf8e209adb688e30d1380239bc107c5042883b05bb4cVirustotal results 20.00% 
2020-10-09n/aelf b81fb47b9973222aa26e9c6d76e40e0995be7f04ebc52b8a3c98ad3941a0a8e4Virustotal results 20.00% 
2020-10-06n/aelf 53e6c6c9c94a201dfd04d1ac47401cdb032bdb520f019fa333946383be97f41aVirustotal results 20.00% 
2020-10-06n/aelf 1d3e4d325c704e9cba5aaed5b98f83271f387ca02255c35c063933bffa206e42Virustotal results 20.00% 
2020-10-05n/aelf 873d3662eb7147c5a418df413250b00de7c0cbad065b49ce721185fce868e3f1Virustotal results 20.00% 
2020-10-05n/aelf 37459acf53ecd2a66239bf2b3be492046f2d27fe5a719f0237f645d9594d7342n/a 
2020-10-04n/aelf e9de709da7fd11e01d5b532e596f123845b22b47c9c11e230f6206063bfd086en/a 
2020-10-03n/aelf afd58b847e425066c97903850f4f4d9491617a64dfd5295311cfdffae16d5724n/a 
2020-10-03n/aelf 0648fcda8ae4e473309c1645cd9888c1169f397866bd1a132f9e9427c9f41613Virustotal results 19.67% 
2020-10-03n/aelf 9e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600Virustotal results 61.02%Mirai