URLhaus Database

You are currently viewing the URLhaus database entry for http://190.5.216.156:59456/Mozi.a which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:705772
URL: http://190.5.216.156:59456/Mozi.a
URL Status:Offline
Host: 190.5.216.156
Date added:2020-10-17 05:06:05 UTC
Last online:2020-10-19 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-10-17 05:08:11 UTC to abuse{at}lacnic[dot]net)
Takedown time:2 days, 6 hours, 24 minutes Poor (down since 2020-10-19 11:32:30 UTC)
Tags:elf Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-18n/aelf 79ba5c3de1a8e9f0a72ca0678a88517d18173b1f0166a499de1ea4686217cf73Virustotal results 16.95% 
2020-10-18n/aelf a04079aa7b362c8a30fad652c5358fecd790156bee49e034af3a282e994409bcVirustotal results 28.33% 
2020-10-18n/aelf 5ff783ef9d4633b952f2e3428d902915bb396ddc17186a355c10bf83303624edVirustotal results 25.00% 
2020-10-18n/aelf 582ea4fbee1f51a8421a97dad48951a5d18d4878cd9aacd8fcda9ee4cc1ffc06Virustotal results 42.62% 
2020-10-17n/aelf 18898080f777fb438a7c21320a2aa3ffa82fd60569d3e1a1d0bc6a975503e577Virustotal results 28.33% 
2020-10-17n/aelf a94f7a05db13229a4db070e19ee9494cf8638bb7e61856380743e26b1fdea8fen/a 
2020-10-17n/aelf c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887Virustotal results 62.71%