URLhaus Database

You are currently viewing the URLhaus database entry for http://147.45.44.104/yuop/66bf353c38733_Grids.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3114135
URL: http://147.45.44.104/yuop/66bf353c38733_Grids.exe
URL Status:Offline
Host: 147.45.44.104
Date added:2024-08-18 11:40:32 UTC
Last online:2024-10-22 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2024-08-18 11:41:07 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:2 months, 5 days, 3 hours, 26 minutes Bad (down since 2024-10-22 15:07:35 UTC)
Tags:exe LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-22n/aexe 029e0fbbdc7d8cb3d67956e84bb4f6e70ed4ea530dbe94a1340d66cfafc2b8f4n/a 
2024-10-22n/aexe 880f670612c982afdb7b1043dbf69031b12eb71129282da665ee3b9403accbean/a 
2024-10-19n/aexe a92fc197f90e8f3cc6b20a6f2868dcc61112e951d5af94a4e59059a53f34043an/a 
2024-10-17n/aexe 306c260c1f9b40ada802a768991a3f10bcdc27a91605787f27c8b918c1634dd9n/a 
2024-10-15n/aexe bc9a66acc2aaaf5d72f208289c5682f4893ddb22526cc0752087c74f90c16f59n/a 
2024-10-13n/aexe fc2419f56be98aef3b8e007250798f9390aed3f8daae06b9bb244041fde06610n/a 
2024-10-11n/aexe 3c6660cb5511c0d1ad340f5d165343764e46934aee86ffc86f49483f2ce5136an/a 
2024-10-09n/aexe bfedfd485c5e3a401254f82a1d9f98c26b8fcaf04139f72fc2f4cb60c45a2da4n/a 
2024-10-06n/aexe 20cf3bb2203454359c80cd23c1b7f2e36142605e4053aeabdc5f4b8cdd5e814en/a
2024-09-29n/aexe 4bf500a4f93e1e483ded575239c025898bf19a248284f25565ee28797f5d1d40n/a 
2024-09-24n/aexe bba415509caca52a8d1c972a94af0ce59628a52f09d366eb5a4303cdfa88b6dbn/a
2024-09-05n/aexe b5dd34f3bebbf34dc9aac2a2c1b7866e635582fd2874db522e5647734d1f31ebn/a 
2024-08-27n/aexe a80a3a482a197412ea164458145452989bb6d3a0e6cd8ec0bd59790878c4e360n/a 
2024-08-22n/aexe 8d406821def1d7a7e1f13868bc856de1ae693b29a45b087810d178bb63d0d293n/a 
2024-08-21n/aexe 6e8b194a7f3cdfed16958932d9fecfae6ce8f976bfb1ca48cae4ec345fc7a011n/a 
2024-08-20n/aexe 4ac424c664a408ce9ff4afbe6e4fcc7f4f9b492331c6186769e6d01123bd1c6dn/a 
2024-08-18n/aexe a461cb4287fb32a2b34bb3ad04c1535f009887189c35bb1fb945b2e3735351bfVirustotal results 8.00%LummaStealer