URLhaus Database

You are currently viewing the URLhaus database entry for http://147.45.44.104/yuop/66b74f08ada90_shapr3D.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3099663
URL: http://147.45.44.104/yuop/66b74f08ada90_shapr3D.exe
URL Status:Offline
Host: 147.45.44.104
Date added:2024-08-10 12:25:15 UTC
Last online:2024-10-22 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2024-08-10 12:26:09 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:2 months, 13 days, 4 hours, 9 minutes Bad (down since 2024-10-22 16:35:59 UTC)
Tags:exe GoInjector LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-21n/aexe bf706d4b88d71007299ede72f0c56ac09030f3d4817ced393607a3ac3c5371d0n/a 
2024-10-16n/aexe 93f5a3fb57e057cb11483ae3fce086bb60ff46f127c58f6c9ba0c2c27f2a089cn/a GoInjector
2024-10-10n/aexe 9bc55309ffec8a3eb34d30296bfa2f1859c848d24117e7f6972602f2f8490145n/a 
2024-10-09n/aexe 162c9f12fc588107cae9950e12ef4b16a478d99cc14807def43684bfc0938127n/a 
2024-10-06n/aexe f06dfaf71001e7b9234ea3d8cbefd367963e82e7ae62d0859567be143fb00142n/aGoInjector
2024-10-04n/aexe 3ea669879270dcf2c9c8d46f39cc8ad1fa3293f9065814e3c96fd274c69dc597n/a 
2024-10-04n/aexe 9db4f91c3dc54d6783645a0fe44193e68cae4b086cf9a7b347e462520d185676n/a 
2024-10-03n/aexe 36ba55f1b713b91d8a6fa3645e0a83b317be210748b6e801a80b6877149936a3n/a 
2024-09-10n/aexe 27cee1b18b37c7dd118345396bccd039f5a199db9c726c22e7ee8d3ec1f0420en/a 
2024-09-06n/aexe 446ca3079f1e5e091efcb47c2c9fb0831b3a8c1e70da9029957f4a28034cf7fcn/a 
2024-08-27n/aexe ff9255b810c074b573d5978a128db04eea4dd300709d42de93ebd97df822e9b6n/a 
2024-08-27n/aexe 2f07dc005823b017a746e76c3bd42fa7b2c0d7eabba7b6c22f2feaaee1131a6an/a 
2024-08-20n/aexe b9cdc75e035888eadc294c6208a5fe2718bee228566e990713f216228e50c204n/a 
2024-08-17n/aexe 65940384690efc1a5117be8ddd1ba949d9f0831a820a444ed83295f02d3028edn/a 
2024-08-10n/aexe 24b5de5dff6997d0dc7e1f400e61bcb4bd6806eadbaa2367d62cddf82a2dedfcn/aLummaStealer