URLhaus Database

You are currently viewing the URLhaus database entry for http://188.143.220.152:44420/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:862693
URL: http://188.143.220.152:44420/Mozi.m
URL Status:Offline
Host: 188.143.220.152
Date added:2020-11-28 07:05:05 UTC
Last online:2020-12-21 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-11-28 07:06:22 UTC to abuse{at}pinspb[dot]ru)
Takedown time:23 days, 15 hours, 45 minutes Bad (down since 2020-12-21 22:51:40 UTC)
Tags:elf Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-21n/aelf 577c669577d8c0376e43b4e734d10eec20615a9d77872ee38a5e61c9f6161cd8Virustotal results 49.06% 
2020-12-20n/aelf 2376445afd5129af9df0e42f10324bfebd648d507642dc8012f0aa6b5b19417bVirustotal results 45.00% 
2020-12-20n/aelf 016baaf390deb7e557a7cea5fd394e0956a3dc19e3c1bce71a783b730c93680bVirustotal results 28.81% 
2020-12-19n/aelf 9f683368f5386c6d99b1c275faebceae1f74604c2e564e7b6eac49b9ffe5d4b7Virustotal results 24.56% 
2020-11-28n/aelf b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605Virustotal results 64.52%