Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
http://61.52.223.233:46029/Mozi.m
URL ⚠ 3 PULSE HITS
↓ CSV ↓ JSON
45
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 45/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
20/30
3 pulses
VIRUSTOTAL
15/35
4/95 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
No additional detail available for this indicator type.
AlienVault OTX Analysis ↗ View on OTX
3
PULSE HITS
Pulse Hits 3
Indicator Type URL
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
Jeroen Gui lists (https://file.jeroengui.be) 2024-04-28
Threat Intel Report - W27-2024 2024-08-13
URLHaus data - 29-06-2024 2024-06-29
VirusTotal Analysis ↗ View on VirusTotal
4/95
DETECTIONS
SUSPICIOUS
Malicious 4
Suspicious 1
Harmless 64
Undetected 26
Reputation 0
TOP DETECTIONS
VENDORRESULT
AILabs (MONITORAPP) malicious
BitDefender malware
Cluster25 malicious
G-Data malware
URLQuery suspicious
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ LISTED
URLHAUS
malware_download
elfMozi
Status OFFLINE
Date Added 2024-06-29
Last Online 2024-06-30
Host 61.52.223.233
Reporter lrz_urlhaus