URLhaus Database

You are currently viewing the URLhaus database entry for http://147.45.44.104/lopsa/66dc99a997229_VirtualLibrary.exe#front which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3164226
URL: http://147.45.44.104/lopsa/66dc99a997229_VirtualLibrary.exe#front
URL Status:Offline
Host: 147.45.44.104
Date added:2024-09-09 14:14:14 UTC
Last online:2024-10-22 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-09-09 14:15:11 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:1 month, 13 days, 3 hours, 52 minutes Bad (down since 2024-10-22 18:07:34 UTC)
Tags:dropped-by-PrivateLoader LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-18n/aexe a3db28c5be6b614b42ffdac0668403a048c6b866608be76a6fcf9e154f66049en/a
2024-10-13n/aexe 5460b3a56fab7f807c52833ce23c5ee63a2954e4838b9924420861b6559f5345n/a 
2024-10-13n/aexe 7db13e722b959b7994480d1464f4716c2f2e4dd8c006d12a7180f42d39f6b7a1n/a 
2024-10-10n/aexe a75d37d3555398881856117cd1bd3a553c11d1304ecac0b293dbf6b4f138fef6n/a 
2024-10-06n/aexe 9337dbb739acff8a86058a07341c2eca689cb4c4c2d3a2eaa1706967c28b2613n/a
2024-10-04n/aexe fcf67408abe04cb8ec170fa48bc00c028ff035ae49b2d9e09c2f626474421002n/a 
2024-10-04n/aexe ff91a04ccbf34e77996b7a5097f507556b522f3cab368d91bbe3fd4085bf5ce5n/a 
2024-10-01n/aexe a0ab38bd7001cdda0bad21747f0751a516041a4032c8b67b675e092510ff9329n/a 
2024-09-26n/aexe da86bfb8483f931ed3c553425860419787e6194a2ebb3c5a36222a70ab2ce482n/a 
2024-09-18n/aexe 89a975ff00255f2ced5b6859db83912f80455381122ed62d22d6c9b62309f43cn/a 
2024-09-15n/aexe 6c38e6b85931760669a3f7fefdbdb23afe1ffe06b76d557aa5dde88f310ccd01n/a 
2024-09-13n/aexe 15c17c7a3abd20b49bb09afd9b10eb8a11f3fa8c0f2cb44d241f7039f90bda85n/a 
2024-09-12n/aexe f72d7c2feed1525c82188acd9acc102201ab9d736c0711ddc3642e403c50c5d2n/a 
2024-09-12n/aexe 6c92d9395b9f5237780f6bb1ffacf03af9b16d856d3e937fcacd6f9fabd98026n/a 
2024-09-09n/aexe d93fbc1550c46af5b5828fa362e36f7ffe36421ac1bb336533e29559f28cfe74Virustotal results 54.05%LummaStealer