URLhaus Database

You are currently viewing the URLhaus database entry for http://177.56.130.55:41258/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:761515
URL: http://177.56.130.55:41258/Mozi.m
URL Status:Offline
Host: 177.56.130.55
Date added:2020-10-28 16:08:29 UTC
Last online:2020-11-03 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-10-28 16:10:06 UTC to abuse{at}lacnic[dot]net)
Takedown time:6 days, 3 hours, 33 minutes Bad (down since 2020-11-03 19:43:18 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-03n/aelf 71ccacb4ec3dbb897e027861c9d8aae7d8dc837da458f0d786d1087d4807bb8dVirustotal results 29.51% 
2020-11-03n/aelf b56d6a4165be3ba4cfd66354bdc48e139c64593a03cecc9d0e44a04c1fa9c5cdVirustotal results 20.69% 
2020-11-03n/aelf b166bc82910d789636ad8c67da27acaec85b575bd669f34cb3c2f3bf6f3bf89fVirustotal results 20.00% 
2020-11-01n/aelf c7e675d2af5db0af076066e023390c4dccc55dc4dc00ad8185d3311f933913ceVirustotal results 29.51% 
2020-10-31n/aelf 9d12ae1ede548eee0a0c3ac3ee04cb4265d0fce9159829fbf51cfb54fd1836bbn/a 
2020-10-31n/aelf 11c067727df3906003c1162ff733c27e7e681207ff2203e69de979da4dc2a3b3Virustotal results 29.51% 
2020-10-31n/aelf a8a49eb4cd41761fe6e28ff6b08ce6ddae0a38b2572b741ce77a5fe81a914c2fVirustotal results 19.67% 
2020-10-31n/aelf 152a4692267842dd5fea26ad7def50d40df6a6785bc0eb6c15c2d9a0f5417dfbVirustotal results 27.87% 
2020-10-29n/aelf 9e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600Virustotal results 64.52%Mirai
2020-10-28n/aelf 5ea3695904a81c2bd1f0cf0507b464cd727d4c5ba4db1f3c92aecbaa5997fe35Virustotal results 25.00%