URLhaus Database

You are currently viewing the URLhaus database entry for http://82.147.84.171/current.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2785742
URL: http://82.147.84.171/current.exe
URL Status:Offline
Host: 82.147.84.171
Date added:2024-03-18 08:49:05 UTC
Last online:2024-03-24 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-03-18 08:50:08 UTC to admin{at}vpsdedic[dot]ru)
Takedown time:6 days, 5 hours, 22 minutes Bad (down since 2024-03-24 14:12:15 UTC)
Tags:dropped-by-PrivateLoader LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-03-22n/aexe 0628f20ce3e0baac5b4a402d75ec9b0328d1b585af2ac39caa6fa6c7fe055b6fVirustotal results 38.03% LummaStealer
2024-03-22n/aexe a0cf37f54549947bc7407c93af1e11f02e2c18b09b1007fa84d92f8b02cd5e4bVirustotal results 41.67% LummaStealer
2024-03-21n/aexe 0f302fc2989a33b4aee665d201f12918271a9d1e87f032ab1527fe624f6dc427Virustotal results 38.57%LummaStealer
2024-03-21n/aexe 27ffcead6c5f9e356f3aad73b00e6953e20d42fe45f87c740d56f5527623620dVirustotal results 37.14% 
2024-03-21n/aexe 0c71fad2535d5f76a9fe689849a509df53029024fa62d25494dd5e703f823c60Virustotal results 39.44% LummaStealer
2024-03-21n/aexe 8adbfe2ab2684cd98bc43f07478cb29e29d2a7134152804f41ca97adb83a560aVirustotal results 39.44% LummaStealer
2024-03-20n/aexe bb6ba7056de5e0a8e32adf69c013f880d52cf5d9864c36479af08ee5f0bf6844Virustotal results 39.44% 
2024-03-20n/aexe 19b82892ba9870a7d8895ef616311d1ec45e4e420c7079d00c41abae54279e62Virustotal results 38.89% LummaStealer
2024-03-20n/aexe 0df44740748708f4d4ffcedc09edca165f18304c27d98ce8f464392657098a75Virustotal results 40.28% 
2024-03-20n/aexe 647d08d563156f6b9609e92cf59d0b6e01661130068fef684c6f0329cd3e7214n/a 
2024-03-19n/aexe b63a1f62bbbd2eccedfd221b231e161b478c55102531f9586c560ef2c3dd4e3cVirustotal results 33.33% LummaStealer
2024-03-19n/aexe f3995ab914045225fa5fa5e6ff39262b106e9d16a25fbaa23674551d7ffab94en/a 
2024-03-19n/aexe ca43587add418bb511755105f7a297d80840d8d3ed6f898ea124d2c77cdb014cn/aLummaStealer
2024-03-18n/aexe 2ae4b5dbda7fe43b8fafb5543832c50e77844c3f1aaf3b5855923b33e91a9ebfn/a LummaStealer
2024-03-18n/aexe 0b5948762b269358b0fac6ffa02ca49274ea6a9c9eb21132de7d4a17a7424c3en/a 
2024-03-18n/aexe 30a6387c39e499294f7ab0f1b033b39965a9490f17daceb3539bdd409e8b589en/aLummaStealer