URLhaus Database

You are currently viewing the URLhaus database entry for http://187.68.38.139:44430/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:859397
URL: http://187.68.38.139:44430/Mozi.m
URL Status:Offline
Host: 187.68.38.139
Date added:2020-11-27 05:05:45 UTC
Last online:2020-12-01 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-11-27 05:06:19 UTC to abuse{at}lacnic[dot]net)
Takedown time:4 days, 12 hours, 5 minutes Bad (down since 2020-12-01 17:12:14 UTC)
Tags:elf Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-28n/aelf fcce725394511c1fa20e568d97a606bb82069818f2490f92079ddd825354d5bdn/a 
2020-11-28n/aelf a2f86af3ff38c9bacb1204d99e7269df7966331b5948a76db3be78b98c04a884n/a 
2020-11-28n/aelf 48e948b89bb549f1fb31dc8211efaa70af094a88b2aa428488f45fe1f03384c1n/a 
2020-11-28n/aelf 52560ad2e82f976693935f9292afaa3f4e6da2709c2ed784fa2944f6ee4f1e42n/a 
2020-11-28n/aelf 83a18d38ff825a3b26e6ddb2190ae601e342e37f78f4823426e67ba3048a684fn/a 
2020-11-28n/aelf e9dbeb516c94fc8ee1679cd431614771e1470f5ac97ec54aabbd070bfc9e2688n/a 
2020-11-27n/aelf 99058e83628e08341569b1e0038c5c202fdb49af8bec42728da9e6f73353cdf1n/a 
2020-11-27n/aelf 990323e509a8773346fc868c27275c57773d1e78eca14d6dc623e40f276c1d4cn/a 
2020-11-27n/aelf d251883a4893e5edda280e75eda87475464e6d399c687440753d4620be135b4an/a 
2020-11-27n/aelf f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8Virustotal results 64.52%