URLhaus Database

You are currently viewing the URLhaus database entry for http://91.143.135.82:35788/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:860385
URL: http://91.143.135.82:35788/Mozi.m
URL Status:Offline
Host: 91.143.135.82
Date added:2020-11-27 12:24:05 UTC
Last online:2020-11-28 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-11-27 12:26:12 UTC to ncc{at}rset[dot]ru)
Takedown time:1 day, 8 hours, 17 minutes Poor (down since 2020-11-28 20:43:27 UTC)
Tags:elf Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-28n/aelf 4e63f818baba7fab6927d70dead43fc4c96b701588f5be285ee2515c25300090Virustotal results 22.03% 
2020-11-28n/aelf 2376445afd5129af9df0e42f10324bfebd648d507642dc8012f0aa6b5b19417bVirustotal results 45.00% 
2020-11-27n/aelf 577c669577d8c0376e43b4e734d10eec20615a9d77872ee38a5e61c9f6161cd8Virustotal results 49.06% 
2020-11-27n/aelf 7b4c8360d4348cb7f4be33c7f012001cc5f8194acc06f018754392ccb27a7043Virustotal results 24.59% 
2020-11-27n/aelf b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605Virustotal results 64.52%