URLhaus Database

You are currently viewing the URLhaus database entry for http://103.75.219.50:44365/Mozi.a which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:812695
URL: http://103.75.219.50:44365/Mozi.a
URL Status:Offline
Host: 103.75.219.50
Date added:2020-11-13 05:04:59 UTC
Last online:2021-01-30 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-11-13 05:06:02 UTC to Abuse{at}northtelecom[dot]com)
Takedown time:2 months, 18 days, 6 hours, 12 minutes Bad (down since 2021-01-30 11:18:40 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-14n/aelf 63346a1f25e63f299201d0c0d9a20f32f127f8accc83030cab7c8add2f37bf6aVirustotal results 61.90% 
2021-01-13n/aelf f6645b4590b974e3c52db619a8c65a52d0a6671a73cf991a59e17725262c230dn/a 
2021-01-12n/aelf 94d30f5a8741ecc85838aa320ace7b803d614cd6705e36c77604ec8d22bbdf25n/a 
2020-12-23n/aelf 620d2c6402bdfac5ea7cad40141a40861c1ee30773e76c84a90f0fcb2831f7a9n/a 
2020-12-18n/aelf 444fea053f6bb0a52c2b105eea5f325d24cd668a161bfea963b692b4d94d426an/a 
2020-11-14n/aelf 936f91df2a8e38ebcff2b6b515b4201b7ca0527e3c8c145fd124449d7050400en/a 
2020-11-13n/aelf 12013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efVirustotal results 69.84%Mirai