URLhaus Database

You are currently viewing the URLhaus database entry for http://187.26.2.136:58554/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:880105
URL: http://187.26.2.136:58554/Mozi.m
URL Status:Offline
Host: 187.26.2.136
Date added:2020-12-01 17:36:51 UTC
Last online:2020-12-08 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2020-12-01 17:38:03 UTC to abuse{at}lacnic[dot]net)
Takedown time:6 days, 15 hours, 24 minutes Bad (down since 2020-12-08 09:02:28 UTC)
Tags:elf mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-08n/aelf 0648fcda8ae4e473309c1645cd9888c1169f397866bd1a132f9e9427c9f41613Virustotal results 26.67% 
2020-12-08n/aelf 6f8f80d4263954351079ec66a23534fe183bc2de01fcfc391edd477ac965fa9eVirustotal results 20.00% 
2020-12-08n/aelf b6fc4c0f6997359b7122ae52071b1165663ef6b5773877e994467c5f33353e0aVirustotal results 27.78% 
2020-12-06n/aelf 832474476b4b761e4dd50f6334152690ccfc55bdb9cf22ccc6907a9115281009Virustotal results 20.00% 
2020-12-06n/aelf e685b0b9776b7027208dbc95f30549770f364a0e8481966e0fd4fecd5967c5adn/a 
2020-12-05n/aelf a308656e1b4e3c158cfde131c5416eb51510723f0eae27af5228840a1e473e8dVirustotal results 20.00% 
2020-12-04n/aelf fe406c779e7ddde89ba1b64b52e041cee150dff0e64da9c6cce1591d9aa8085cVirustotal results 29.51% 
2020-12-04n/aelf afd58b847e425066c97903850f4f4d9491617a64dfd5295311cfdffae16d5724Virustotal results 20.00% 
2020-12-01n/aelf 408de3f2c0b18f3e3a62a8a4b4ba2788951f0153c038333d39ce01cb916a06d7Virustotal results 27.87% 
2020-12-01n/aelf 9e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600Virustotal results 62.90%Mirai
2020-12-01n/aelf fdc2c724ba850750b3e26d81e849941cb1904d6b441af288cb45cb8fce56aaebVirustotal results 20.69% 
2020-12-01n/aelf af6fe084d1dd9291e703f23759258e7b70db3f1dcc123939f75817793d977ed1Virustotal results 20.00%