URLhaus Database

You are currently viewing the URLhaus database entry for http://187.26.2.136:52328/Mozi.a which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:731274
URL: http://187.26.2.136:52328/Mozi.a
URL Status:Offline
Host: 187.26.2.136
Date added:2020-10-21 21:50:24 UTC
Last online:2020-11-04 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-10-21 21:52:20 UTC to abuse{at}lacnic[dot]net)
Takedown time:13 days, 23 hours, 47 minutes Bad (down since 2020-11-04 21:39:41 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-04n/aelf 66483e23d3f45362d0bdaac4b4455249b1222a215a83bf6152890699e4dc3b49Virustotal results 20.00% 
2020-11-04n/aelf e2926513d9b18bdddc788cc9301598fd79d91ecde53602c52534b896388022b7Virustotal results 21.67% 
2020-11-03n/aelf 873d3662eb7147c5a418df413250b00de7c0cbad065b49ce721185fce868e3f1Virustotal results 20.00% 
2020-11-03n/aelf e16c3355378333ffc77539848d516061b4ef7091a386f560426cfab591ba696aVirustotal results 20.00% 
2020-11-03n/aelf b61c06bc47ecccd499fc2b61794158a71f171742878826e02e04c61d4ab323d9Virustotal results 22.95% 
2020-11-02n/aelf cc3609accde839e5b2329551ae9456d7699680bdd1097de2d45563b646b99704Virustotal results 22.81% 
2020-11-02n/aelf 6ff5d61c8facf26d01cd9cc1b65a4e7c290ef9136c4ff58898e0195ebc57d6d1Virustotal results 20.00% 
2020-11-02n/aelf 4e14104f0fe7ab6c43a4cf8e209adb688e30d1380239bc107c5042883b05bb4cVirustotal results 20.00% 
2020-11-02n/aelf d4658825ceeef3553edde7782475a31727249e07eeec361f0373840799ccfe4eVirustotal results 28.81% 
2020-11-01n/aelf f2f8bf0d598f8de43923c9565ca5b703ca2dd4512cd0fbbfe7616198d7b28bean/a 
2020-11-01n/aelf 9f9f978af7f06043b72be27deb729987a883fa3c1a5242f19e24ca12c63315d9n/a 
2020-11-01n/aelf 47158f3ec519079e3df9d2291bed0e70d6e161e9a6755ca228fd2179a4782c99Virustotal results 20.00% 
2020-10-29n/aelf 8634724f4cbbfc8387e99c3f9347cf4017745754736c154aa5c13b5821d6720eVirustotal results 27.59% 
2020-10-29n/aelf 2c553124caf12ce30bc2c0730ae3d34206c80889ea9a2eee1b427376211153bbVirustotal results 26.32% 
2020-10-28n/aelf 869fa60768adca68192b8c7d1bb593f0dadcc68f06022a075d6c1af5366949e7n/a 
2020-10-28n/aelf 78faa7c818b75ee22e3dc446e2d1d311d2c01d0d3a0f5a23793b1a6331e9dd0cVirustotal results 19.67% 
2020-10-28n/aelf a215a991b5497e3ffcaf0d0966cd6a101ab8b3b257ef3313a309257f63768c0cVirustotal results 26.67% 
2020-10-28n/aelf 125586ad6c6e740d4e785944aef9e29a14897e58742a4548d79a82057b29d225Virustotal results 26.67% 
2020-10-28n/aelf 152a4692267842dd5fea26ad7def50d40df6a6785bc0eb6c15c2d9a0f5417dfbVirustotal results 27.87% 
2020-10-28n/aelf 53e6c6c9c94a201dfd04d1ac47401cdb032bdb520f019fa333946383be97f41aVirustotal results 30.91% 
2020-10-27n/aelf fe406c779e7ddde89ba1b64b52e041cee150dff0e64da9c6cce1591d9aa8085cVirustotal results 29.51% 
2020-10-27n/aelf 4553b847838540a1e8271cbe6b9fe593109b13d82731f1ae3def3cc0e6146304Virustotal results 25.42% 
2020-10-27n/aelf cbf95c06b1d503246fc8927cd97e1589ad8c0f5e62d28befdd6b1357ded161bcVirustotal results 20.00% 
2020-10-23n/aelf c13846be94bbc18f5e35602c608a0e23a9d4e6b870cce86f4ff23572338a8e5fVirustotal results 21.31% 
2020-10-21n/aelf 9e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600Virustotal results 61.67%Mirai