URLhaus Database

You are currently viewing the URLhaus database entry for http://116.203.121.140/eee.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2714252
URL: http://116.203.121.140/eee.exe
URL Status:Offline
Host: 116.203.121.140
Date added:2023-09-26 13:17:07 UTC
Last online:2023-09-30 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: vxvault
Abuse complaint sent (?): Yes (2023-09-26 13:18:05 UTC to abuse{at}hetzner[dot]com,no-email{at}apnic[dot]net)
Takedown time:3 days, 20 hours, 26 minutes Bad (down since 2023-09-30 09:44:11 UTC)
Tags:exe LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-09-26n/aexe 690e898fd01b69ac3eea36ac0bde48295eeb37b85a76ab96368b02dd7ee51615Virustotal results 2.78%LummaStealer
2023-09-26n/aexe 7a01c36e832da05ffda1e7c98b2ce82f66022223269e5d49f2636943ad963c77n/a 
2023-09-26n/aexe 6a096c8158da4e2453ba68fe0f780c2e4181c01f125d7831fc5d58a77faf792cVirustotal results 36.11%LummaStealer