URLhaus Database

You are currently viewing the URLhaus database entry for http://94.142.138.221/file/name.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2712689
URL: http://94.142.138.221/file/name.exe
URL Status:Offline
Host: 94.142.138.221
Date added:2023-09-20 14:55:07 UTC
Last online:2023-09-25 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: andretavare5
Abuse complaint sent (?): Yes (2023-09-20 14:56:07 UTC to support{at}zerohost[dot]network)
Takedown time:4 days, 21 hours, 2 minutes Bad (down since 2023-09-25 11:58:18 UTC)
Tags:dropped-by-PrivateLoader LummaStealer Raccoon link Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-09-22n/aexe 7a12d3a0d2f7d946c2726e1a9459458c8c9d03be7f462d9bea02d6ea47d98ee0n/a 
2023-09-22n/aexe a89696a2382fce3946099cbcbc99d31449bc36b5d284ae411feff84c9813702en/a LummaStealer
2023-09-22n/aexe dde319a8916aaf36a266aaedac8855df3bf05c4711d51c052b0027e0e7ad2eden/a LummaStealer
2023-09-22n/aexe 059b698510fe844d463fdb51fa1ef8ef52314ecd1c844faef44f9aa8c8e80141n/a LummaStealer
2023-09-22n/aexe 5182de0d92063b8d44b20895c0b70bdeeaadacab68a542390db7a2e697e188e2n/a LummaStealer
2023-09-21n/aexe afa556d70085b29af9b6116c9c1c9fccfa95744bcb7a23bdf23acf67d5e76e96n/a LummaStealer
2023-09-21n/aexe 2560f4997ab679d7b72bf27f367dca4bac80c9bfd5f0f37d8af5428c7d3e1817n/aLummaStealer
2023-09-21n/aexe 18dcba2f8f0683e43c19649abbf3d7ba56aedba7d15bcea0bd2251ee839a63cdn/a LummaStealer
2023-09-21n/aexe 77b1027fe29ba7af32c4469b0d6fdc03847c1669bc110954ede3c58e00adec30n/a LummaStealer
2023-09-21n/aexe e7cdb442b434a2920c0087fd295b533e6561b7eaf2879b504da971ed07b1acbdn/a LummaStealer
2023-09-21n/aexe 2b451f8f8e333bf4b721b49e828e87e74605ad9deae596b2bd46eb786bb9458an/a LummaStealer
2023-09-21n/aexe b3d7e8da81489bda270c71168266cf072216a9fa02dd88840111e469b3a86423n/a LummaStealer
2023-09-21n/aexe d7a6d08355fd87431c3c0c6d68a41e925e707e06a33a2c51b3cbc8cf463b6c98n/aLummaStealer
2023-09-21n/aexe b39157f7bbbfd61397419f6363229e6c3c546d7119e0c1da7c7c018c6ab2bb10n/aLummaStealer
2023-09-21n/aexe a4e189e07f1db1b4826c5d539f024eb0f949a4c678ac34c71a76c0dd9e01c684n/aLummaStealer
2023-09-21n/aexe d239a96a2b15b78ab70b93fd103c76293eb4490593992d6b35c1ae7d7956ae15Virustotal results 35.21%Stealc
2023-09-21n/aexe 8156fd60e7ad16f38f0e277ed53383e31060577bd1b3bba41f8aa3afe86a3860n/a LummaStealer
2023-09-21n/aexe 77460056386f07d96908455241b15091c3edecd9fd55fbf6ce7f3a061c7ac5cdn/aLummaStealer
2023-09-20n/aexe 30dc937be20093d521ee5c56d25c3a822f53df4d98be08cfb40d27ad3966d7f9n/aLummaStealer
2023-09-20n/aexe 7764dcf5ebc8e3193e1b4e1536c7a730ef731e257f171d96fe1011cb270a805en/aLummaStealer
2023-09-20n/aexe dcb21f8c085ca8b001e2a7e5926ac1ae908e638c594ca48bc3622f109407e0e5n/aLummaStealer