URLhaus Database

You are currently viewing the URLhaus database entry for http://77.91.77.82/lend/quickaccesspopup.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2898920
URL: http://77.91.77.82/lend/quickaccesspopup.exe
URL Status:Offline
Host: 77.91.77.82
Date added:2024-06-20 17:34:18 UTC
Last online:2024-07-24 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-06-20 17:35:16 UTC to abuse{at}sunhost[dot]ltd)
Takedown time:1 month, 3 days, 18 hours, 59 minutes Bad (down since 2024-07-24 12:35:08 UTC)
Tags:exe LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-06-21n/aexe 0b3f24b3feeac3d9a82d19cae578695acbbf9b7f2635b75c08c9d0c01483df8eVirustotal results 22.97% LummaStealer
2024-06-20n/aexe 2c4c0200fcb9c8311e1203c1d1c660b9df62c76b8632b227853e5f65e8efddf7Virustotal results 28.38%LummaStealer