URLhaus Database

You are currently viewing the URLhaus database entry for http://171.22.28.212/12/sufferdemand.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2718517
URL: http://171.22.28.212/12/sufferdemand.exe
URL Status:Offline
Host: 171.22.28.212
Date added:2023-10-10 07:20:32 UTC
Last online:2023-11-06 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-10-10 07:21:05 UTC to matrixllp{at}skiff[dot]com)
Takedown time:27 days, 1 hours, 47 minutes Bad (down since 2023-11-06 09:08:33 UTC)
Tags:64 exe LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-11n/aexe e6611482aea07353829d8705daecb8342c3060bcb99f73464423e8bed9f22384Virustotal results 25.00% LummaStealer
2023-10-10n/aexe 029cb71b11ee64c16cdaf203d594a1378808bf1a449459d4374a88882dc25aa4Virustotal results 33.33%LummaStealer
2023-10-10n/aexe 90bb8de06b3450c6b63aa813597ed02a9fec7a1c2040a3271a0f5a7cdc145e66Virustotal results 31.43%