URLhaus Database

You are currently viewing the URLhaus database entry for http://58.72.165.39:3510/Mozi.m which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:886156
URL: http://58.72.165.39:3510/Mozi.m
URL Status:Offline
Host: 58.72.165.39
Date added:2020-12-03 15:37:05 UTC
Last online:2021-10-22 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2021-10-22 18:56:05 UTC to irt{at}nic[dot]or[dot]kr)
Takedown time:1 year, 3 month, 2 days, 4 hours, 26 minutes Bad (down since 2022-02-28 20:04:26 UTC)
Tags:elf Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-24n/aelf 39df3817344091027acb0090fa7287ccb996093a05d39b273fea131efb83582aVirustotal results 26.67% 
2022-02-07n/aelf eeac815a3ace597284c0485efd570ad93ae319c9c15df27488c4a0b15bfec851Virustotal results 27.42% 
2021-09-04n/aelf 3875afc6ae1567b83a6501c9f365e18acc9b6826bf141a97bb02d9b6ee994b7an/a 
2021-09-02n/aelf b5b8642157f5f71d440c21f1f26128a8007afa449f8a857edc9ab64fd8b93dafVirustotal results 16.39% 
2020-12-03n/aelf f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8Virustotal results 64.52%