URLhaus Database

You are currently viewing the URLhaus database entry for https://raw.githubusercontent.com/chenjackie528/download/main/Setup.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2711999
URL: https://raw.githubusercontent.com/chenjackie528/download/main/Setup.exe
URL Status:Offline
Host: raw.githubusercontent.com
Date added:2023-09-16 07:59:07 UTC
Last online:2023-09-21 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-09-16 08:00:12 UTC to abuse{at}github[dot]com)
Takedown time:9 days, 13 hours, 43 minutes Bad (down since 2023-09-25 21:44:08 UTC)
Tags:exe LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-09-24n/aexe 30a0922094f5c5cf258518e0cdfdbe4e1cbf13d4d43d1867275dd00623367aa6n/a LummaStealer
2023-09-23n/aexe c75544560df66ea7f8fa020b1924e7356d6dd9a3b3920194bf7555baece4c850Virustotal results 20.29% LummaStealer
2023-09-18n/aexe c0bce7223df893a5d5b0ab6b5bebd54fdef2736dfaa2ffb159e6bbfc2b9869e9n/a LummaStealer
2023-09-16n/aexe e8f15cce81d73dd30199ac900f7c6b04b213121a8a8b00440399422d65a7b083Virustotal results 15.49%LummaStealer