URLhaus Database

You are currently viewing the URLhaus database entry for http://187.68.120.209:56294/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:700219
URL: http://187.68.120.209:56294/Mozi.m
URL Status:Offline
Host: 187.68.120.209
Date added:2020-10-16 09:01:18 UTC
Last online:2020-10-25 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-10-16 09:02:14 UTC to abuse{at}lacnic[dot]net)
Takedown time:9 days, 8 hours, 26 minutes Bad (down since 2020-10-25 17:29:03 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-25n/aelf 0b9e2d6fb78aa984e91e1142dad9dcee60e75802e1bab2d494096d6d234ed09aVirustotal results 20.34% 
2020-10-25n/aelf 4ff61a9915d981f1a2939940527b00ea1c2934b44a83689afba3501384b10dcdVirustotal results 28.33% 
2020-10-24n/aelf 38590042a7e0aa0cdf70771c86950c4f974dd7cb5feddf2f1f49c7480cdfb824Virustotal results 29.51% 
2020-10-23n/aelf 6ff5d61c8facf26d01cd9cc1b65a4e7c290ef9136c4ff58898e0195ebc57d6d1Virustotal results 20.00% 
2020-10-21n/aelf e89da90af54f0e5d952c1318a606c1d2829b569d42a7272f216ec00181d31542Virustotal results 29.51% 
2020-10-21n/aelf 4e14104f0fe7ab6c43a4cf8e209adb688e30d1380239bc107c5042883b05bb4cVirustotal results 20.00% 
2020-10-20n/aelf 9235b8e7a4a555ec210c8a85f1982dcb96b97bcce03f9fb8c3ed2215e66c7355Virustotal results 28.81% 
2020-10-20n/aelf 57903ba247dafe99178e54e3b9ae725ba3970980c429ab11df063762d1c48c4aVirustotal results 18.64% 
2020-10-19n/aelf 77aea958b53c8a27b125facfbc959098552b83d48adbef2b3adab0328ee09250Virustotal results 20.00% 
2020-10-19n/aelf 17ce3908975a235b320fec87547f69a8e6774f88162f8c390384fb63adf2e8fbVirustotal results 19.67% 
2020-10-19n/aelf 6248be254613b9c0c1683692544c69f0bda6bc0f9bcc347f67b99044e37c2597Virustotal results 20.00% 
2020-10-19n/aelf 2c553124caf12ce30bc2c0730ae3d34206c80889ea9a2eee1b427376211153bbVirustotal results 26.32% 
2020-10-19n/aelf 873d3662eb7147c5a418df413250b00de7c0cbad065b49ce721185fce868e3f1Virustotal results 20.00% 
2020-10-19n/aelf 0eda449163ed29b80c840ab19638b1723531ce78457cdd99894d7e2951dbef56Virustotal results 20.34% 
2020-10-19n/aelf da6f92892cbb66cf8a080495a7569bfd6d6bf12b1057e4d3ba3222957fa2a9f1Virustotal results 20.00% 
2020-10-18n/aelf 5a5d88c55b720d634482c260b5cd936a008934bdc1af61f8d08147ba39df4815Virustotal results 21.67% 
2020-10-18n/aelf 110c4cad1db364c9cc7ad309c6c23d39ab85d86917bba418299bfd856188fecbVirustotal results 18.33% 
2020-10-16n/aelf 1e3cddc3d3b80e438c44b1ad212b37824fbe59e676ec018e51a9ae7d79af9f42Virustotal results 28.33% 
2020-10-16n/aelf 33b51a1b09fc82da987ba8df69213c213ddba402d170e9257a8d36b82be1e39eVirustotal results 20.34% 
2020-10-16n/aelf c9c1f2f5c2ca5005ad45a1f89f5923bfbbb1b04320b6e2b4d294ef71b26d0cceVirustotal results 20.00% 
2020-10-16n/aelf ef1960da9679a9e2ae863fae63311eb34d4b9f02566fc05998ad29d798a52b19Virustotal results 18.97% 
2020-10-16n/aelf 9e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600Virustotal results 62.30%Mirai