URLhaus Database

You are currently viewing the URLhaus database entry for http://77.73.134.27/llpb1133.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2520961
URL: http://77.73.134.27/llpb1133.exe
URL Status:Offline
Host: 77.73.134.27
Date added:2023-01-28 17:37:05 UTC
Last online:2023-04-08 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-01-28 17:38:05 UTC to abuse{at}lethost[dot]co)
Takedown time:2 months, 9 days, 15 hours, 14 minutes Bad (down since 2023-04-08 08:52:15 UTC)
Tags:Amadey fabookie

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-02-12n/aexe 3f59d2cf23b45b7f56563e85bf818f827f2607d12661fb438bcf031550ec0ec0Virustotal results 73.24% Fabookie
2023-02-05n/aexe bf9b005ee65e2ea712060d05fd098ec0665698a26f434e55d93384b74953b549n/a Amadey
2023-02-04n/aexe 6fc01a3526d5ba9c4a787992f865afe68332e7d5299beea9460be3941430dd70n/a Amadey
2023-02-01n/aexe 96b675ea1180623cbaaab1a0fa5028320bf161fa829bfa922a4b920160b47defn/a Amadey
2023-01-29n/aexe e3821fb308eecf48c36679380663aa25afc7dd368f37de6304da43a599aed828n/aManusCrypt
2023-01-28n/aexe 2ff76bc4da9995c9d30edd3b54e838fa5f3c55f5a12a8509d82b2e4837b55510Virustotal results 38.81%Fabookie