URLhaus Database

You are currently viewing the URLhaus database entry for http://187.26.44.105:56294/Mozi.a which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:733744
URL: http://187.26.44.105:56294/Mozi.a
URL Status:Offline
Host: 187.26.44.105
Date added:2020-10-22 09:13:40 UTC
Last online:2020-10-25 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-10-22 09:14:04 UTC to abuse{at}lacnic[dot]net)
Takedown time:3 days, 0 hours, 12 minutes Bad (down since 2020-10-25 09:26:28 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-25n/aelf 11b959c0492bf784acab4a72865fa664f1cb70689155abc6c312e06da0f8e925Virustotal results 28.33% 
2020-10-25n/aelf fc0bb65fbeef7e034a38a68b0bd9b73511d9126fe8fa262642a885db3e54c768Virustotal results 20.00% 
2020-10-25n/aelf 53e6c6c9c94a201dfd04d1ac47401cdb032bdb520f019fa333946383be97f41aVirustotal results 30.91% 
2020-10-25n/aelf 9f80e0c84691c5191476e6d74917f722395cfcd8aef358720b4b2e64a58ebfbfVirustotal results 19.67% 
2020-10-25n/aelf 4e14104f0fe7ab6c43a4cf8e209adb688e30d1380239bc107c5042883b05bb4cVirustotal results 20.00% 
2020-10-24n/aelf 6ff5d61c8facf26d01cd9cc1b65a4e7c290ef9136c4ff58898e0195ebc57d6d1Virustotal results 20.00% 
2020-10-24n/aelf 12bd0d8e1bf2fcf85fd18cf1047540724d5298cbcbe4dd44b7f58069b67d5156Virustotal results 26.67% 
2020-10-24n/aelf 11c067727df3906003c1162ff733c27e7e681207ff2203e69de979da4dc2a3b3Virustotal results 29.51% 
2020-10-24n/aelf 4543edc81c0b0bfcd42d76e3233c182da84ce5c8f4feccf7d4edd3eec2d0bafbVirustotal results 29.51% 
2020-10-23n/aelf d77fa7aa0f0b1e42f8c1184873d98238642e01d6c601aecd2eac06f310490f55n/a 
2020-10-23n/aelf b56d6a4165be3ba4cfd66354bdc48e139c64593a03cecc9d0e44a04c1fa9c5cdVirustotal results 20.69% 
2020-10-23n/aelf 8036b64e81d2244bf94335f89bad1f1f419f9616de77771b1030a200655f3cadVirustotal results 28.81% 
2020-10-23n/aelf 3c57b3625b73ddc14f973cd8fa1b29973e95980e90401e43833abd6a653a3de8Virustotal results 29.51% 
2020-10-23n/aelf adad5de581f2f1c70819559dc4a73a75e74f8cfb79eca8652cd2cc780fd247a1Virustotal results 27.59% 
2020-10-23n/aelf f00758fbca3d6767ee3e34908c9be456ee2411d33f6b1a73503e19ed81c55592n/a 
2020-10-23n/aelf e5a3c80ac8de9aa0ceae449233dd4fcf3c1a4e3eb01525822132f3a040cf884eVirustotal results 28.07% 
2020-10-22n/aelf daaf15d5d51ec4a54e072691c15fc39a544a53658a63d4c7b06a2070ee76cc60Virustotal results 25.42% 
2020-10-22n/aelf 9e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600Virustotal results 61.67%Mirai
2020-10-22n/aelf 907f5bf8f1f7b2bcbf1b2771f374974f2235c52c55639c42f5ca7540248269bbVirustotal results 40.68%