URLhaus Database

You are currently viewing the URLhaus database entry for https://organ78.com/assets/themes/current.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2778069
URL: https://organ78.com/assets/themes/current.exe
URL Status:Offline
Host: organ78.com
Date added:2024-03-08 22:40:12 UTC
Last online:2024-03-13 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-03-08 22:41:05 UTC to abuse{at}purpleit[dot]com)
Takedown time:4 days, 21 hours, 45 minutes Bad (down since 2024-03-13 20:26:30 UTC)
Tags:dropped-by-PrivateLoader LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-03-13n/aunknown 2ea2e26d6b9556679d1e9faaec8b330066d6ae3e1456c7640e3a222f0776c483Virustotal results 0.00% 
2024-03-13n/aexe eae8f8a9fc35609063dd17b71e1ab0444267cb5e4d010c605b0ab737fc99eb33n/aLummaStealer
2024-03-13n/aexe 480d64142920f2df2e14b5ca050e259036eb48e1309f23cb8c5b5ace34d1dc29n/a LummaStealer
2024-03-12n/aexe 89d7c12ea9fb1f020a2eebef4d802eadd1316bf66e3b98fef8465d4ed26bac04n/a LummaStealer
2024-03-12n/aexe 64045643ac61c5b69cd576312a62d5a0c969cb2ea1bd23bd4b7a1599653db92bn/a LummaStealer
2024-03-12n/aexe 7cca540acbf840d2066f1cfa2f4840bcb10a84bddf5715744b1e2609f7e26e05n/a LummaStealer
2024-03-11n/aexe 96df5e2913cb23191bc022060efc414b3c15bc97edd15c125480d1ed6f60b543n/a LummaStealer
2024-03-11n/aexe f64f93cf0d5496999d1372835bdbf57eeb85c1a2577f15769c4a7dd783a7f909n/a 
2024-03-11n/aexe 9a904d60ea94e0965d5bdfb2903c59c29f4179e831431c2dd289970c69f0820an/a 
2024-03-09n/aexe 1fe924dc61ca61b30622eaae07e9ce11f3c23595d57cb45c86a194329c467f9cn/a 
2024-03-09n/aexe 95d8a8203fbdf38a3ce777e205a375867bdb44e76067674ec439afaaeb60d031n/aLummaStealer
2024-03-08n/aexe a9f1f5da055f6b147da24eb46f8f48ef014a55c3343cc1ada901b282d927ecaen/aLummaStealer