URLhaus Database

You are currently viewing the URLhaus database entry for http://77.91.77.81/lend/onecommander.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2885846
URL: http://77.91.77.81/lend/onecommander.exe
URL Status:Offline
Host: 77.91.77.81
Date added:2024-06-13 03:57:10 UTC
Last online:2024-07-24 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-06-13 03:58:07 UTC to abuse{at}sunhost[dot]ltd)
Takedown time:1 month, 11 days, 8 hours, 31 minutes Bad (down since 2024-07-24 12:29:12 UTC)
Tags:64 exe LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-06-30n/aexe d0ad1aa30416637126aa67fa7a3ee7c81a03e95930f872b1fef1059965c30454n/a 
2024-06-13n/aexe 58ca3c309de385bb0a975f4b7c9d94cb0adf6feef9c75038bc997c8b0e638465Virustotal results 32.39%LummaStealer