URLhaus Database

You are currently viewing the URLhaus database entry for http://5.42.96.7/seno/lomik.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2843515
URL: http://5.42.96.7/seno/lomik.exe
URL Status:Offline
Host: 5.42.96.7
Date added:2024-05-08 18:36:07 UTC
Last online:2024-05-10 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-05-08 18:37:07 UTC to abuse{at}sunhost[dot]ltd)
Takedown time:1 day, 21 hours, 9 minutes Poor (down since 2024-05-10 15:46:45 UTC)
Tags:dropped-by-PrivateLoader RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-05-10n/aexe c99ffc20899fccc6c8bd1d083dca14179a49fcac0e68995994f957dd5ea062c4Virustotal results 48.61% RiseProStealer
2024-05-10n/aexe 33f1c46ea9e51e87265380463ae2d21978c4979a8e475597e868808d5d5e8ba4Virustotal results 49.32% RiseProStealer
2024-05-10n/aexe 57dcd6a8cf65e0d862eadc9155e2111ed31303a20d4c720f55fe7e684d09c868Virustotal results 51.39% RiseProStealer
2024-05-10n/aexe 8b56dd0cf09b887d4fe93bdacfc472179c6a009b411144bcee7e3ebc26f4cfc7Virustotal results 49.32%RiseProStealer
2024-05-10n/aexe f0b3d835b6d4c41632228adc9cacc29a14cd586de1127f8bde63a4153b22c344Virustotal results 49.30% RiseProStealer
2024-05-09n/aexe ff8ea8e38758b307cf098d5f95c39c51f346433e3b91b603e35bbf9c0919204dVirustotal results 48.61% RiseProStealer
2024-05-09n/aexe 5495f04f5745f1f375103be4634f3b4d8fa78ce7b1941cd75d78b79a105c7a09Virustotal results 49.32% RiseProStealer
2024-05-09n/aexe f799ba874f6ee86001b59af01823a4caf374f0fc615ee4a5c8c65302a30292a8Virustotal results 50.00% RiseProStealer
2024-05-09n/aexe 16d7507b619f3dc3b48494cc9b8867484c5406caea5f5c2bd94a4b6cf5b2f437Virustotal results 49.32% RiseProStealer
2024-05-09n/aexe 8c14c76bb60ec162e9cd97de56d815b8ae1eb0ce84a5193d82b547ddd38f7193Virustotal results 47.95% RiseProStealer
2024-05-09n/aexe c6f21c705ea0cac0fcfbf3937aae87c7645d28b50eb4e222ba318daa850883b1Virustotal results 47.95% RiseProStealer
2024-05-08n/aexe 6cfad9496a2bee32a0f4dda1de58005c6592a59e7365623f5314ccae417b1055Virustotal results 47.22%RiseProStealer
2024-05-08n/aexe 55e4ffb722e1d63bc290f049e43c140545bc42571dd18ff9e9d7d9cede622025n/aRiseProStealer