URLhaus Database

You are currently viewing the URLhaus database entry for https://185.255.122.133/uploads/il111.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3191170
URL: https://185.255.122.133/uploads/il111.zip
URL Status:Offline
Host: 185.255.122.133
Date added:2024-09-25 14:05:10 UTC
Last online:2024-09-29 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2024-09-25 14:06:08 UTC to abuse{at}bee-hosted[dot]net)
Takedown time:3 days, 20 hours, 40 minutes Bad (down since 2024-09-29 10:47:03 UTC)
Tags:LummaStealer opendir zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-09-29n/azip 22dad731783f3b9c07b371b473044bab5effac3ece33cd05a5a5feffd6616ee9Virustotal results 10.14% LummaStealer
2024-09-28n/azip 3a08140d60e3db4cf8c8d44586be944f50ccfe8fda91589b418c282e1a8838b7n/a LummaStealer
2024-09-28n/azip 40595e336afade8583d9dd9b497fdddf5194b41d3d72972669602e9f0307c2bdn/a LummaStealer
2024-09-26n/azip 56fd12385d5d5db32861dd17d62503b4295dd4e9574cdef9d7f5c1f9618e2155n/a LummaStealer
2024-09-25n/azip 6488b460a1055b4598cc3a934e4fad28372d3004e65cad6e742c2bab9380fc72Virustotal results 4.35%LummaStealer