Mozi.a

First submission 2022-10-22 04:34:03 Last sumbission 2024-07-21 01:41:06

File details

File type: ELF 32-bit MSB executable, MIPS, MIPS-I version 1 (SYSV), statically linked, no section header
File size: 129.75 KB (132860 bytes)
MD5: dbc520ea1518748fec9fcfcf29755c30
SHA1: 0a427f86b4360fb603c6e3c5878c9be7ced59adc
SHA256: c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

URLs, FQDN and IP indicators 13

URL Host (FQDN/IP) Date Added
hXXp://117.241.206.23:58421/Mozi.a VirusTotal Report 117.241.206.23 VirusTotal Report 2024-07-21 01:41:08
hXXp://117.206.132.117:49522/Mozi.a VirusTotal Report 117.206.132.117 VirusTotal Report 2024-07-20 12:55:06
hXXp://61.52.32.126:38888/i VirusTotal Report 61.52.32.126 VirusTotal Report 2024-07-20 11:12:05
hXXp://61.52.32.126:38888/bin.sh VirusTotal Report 61.52.32.126 VirusTotal Report 2024-07-20 10:03:05
hXXp://182.126.241.87:41895/bin.sh VirusTotal Report 182.126.241.87 VirusTotal Report 2024-07-19 20:33:05
hXXp://61.52.32.126:38888/Mozi.m VirusTotal Report 61.52.32.126 VirusTotal Report 2024-07-19 03:02:04
hXXp://115.59.6.200:38759/Mozi.a VirusTotal Report 115.59.6.200 VirusTotal Report 2024-07-18 22:28:05
hXXp://115.59.6.200:38759/i VirusTotal Report 115.59.6.200 VirusTotal Report 2024-07-17 08:45:06
hXXp://115.59.6.200:38759/Mozi.m VirusTotal Report 115.59.6.200 VirusTotal Report 2024-07-17 01:30:07
hXXp://115.59.6.200:38759/bin.sh VirusTotal Report 115.59.6.200 VirusTotal Report 2024-07-16 11:12:05
hXXp://59.89.203.52:51056/Mozi.m VirusTotal Report 59.89.203.52 VirusTotal Report 2024-07-16 08:54:06
hXXp://181.191.80.226:35272/i VirusTotal Report 181.191.80.226 VirusTotal Report 2024-07-15 16:03:06
hXXp://181.191.80.226:35272/bin.sh VirusTotal Report 181.191.80.226 VirusTotal Report 2024-07-15 15:36:06

Strings analysis - Possible URLs found 1

http://upx.sf.net