URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.101/file/LB3.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3079675
URL: http://185.215.113.101/file/LB3.exe
URL Status:Offline
Host: 185.215.113.101
Date added:2024-07-30 17:22:05 UTC
Last online:2024-10-25 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-07-30 17:23:07 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:2 months, 27 days, 1 hours, 19 minutes Bad (down since 2024-10-25 18:42:38 UTC)
Tags:BlackMatter Darkside exe FakeBit lockbit Ransomware

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-08-05n/aexe 5ccc9cb2e75c85b87f7244cca81c1acf6dfffe8f35a8c4d0ee00795872a9c9e7n/a Ransomware.BlackMatter
2024-07-30n/aexe 3c13ae9a53b29849fd3bb75d3259a23658cd687441f8bdd610487007c51d2eacVirustotal results 84.00%LockBit