Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
http://39.35.108.189:50376/Mozi.m
URL ⚠ 2 PULSE HITS
↓ CSV ↓ JSON
45
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 45/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
10/30
2 pulses
VIRUSTOTAL
25/35
15/96 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
No additional detail available for this indicator type.
AlienVault OTX Analysis ↗ View on OTX
2
PULSE HITS
Pulse Hits 2
Indicator Type URL
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
Jeroen Gui lists (https://file.jeroengui.be) 2024-04-28
URLHaus data - 07-06-2024 2024-06-07
VirusTotal Analysis ↗ View on VirusTotal
15/96
DETECTIONS
MALICIOUS
Malicious 15
Suspicious 1
Harmless 53
Undetected 27
Reputation 0
TOP DETECTIONS
VENDORRESULT
AILabs (MONITORAPP) malicious
Antiy-AVL malicious
BitDefender malware
CRDF malicious
Cluster25 malicious
CyRadar malware
ESET malware
Fortinet malware
G-Data malware
Lionic malware
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ LISTED
URLHAUS
malware_download
elfMozi
Status OFFLINE
Date Added 2024-06-07
Last Online 2024-06-08
Host 39.35.108.189
Reporter lrz_urlhaus