URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.103/lumka/random.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3241739
URL: http://185.215.113.103/lumka/random.exe
URL Status:Offline
Host: 185.215.113.103
Date added:2024-10-18 16:56:07 UTC
Last online:2024-10-20 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-10-18 16:57:08 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:1 day, 20 hours, 14 minutes Poor (down since 2024-10-20 13:11:52 UTC)
Tags:LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-20n/aexe 43cf34e36a136c2803f5f4240c7cd09010b2640d80a9411e71c48a3352bf2f86Virustotal results 45.21%LummaStealer
2024-10-20n/aexe eef3fc85aa7aac8e5f9de7b401e1536e7ad3d0fcb53dbcafc28ada050b5335d2Virustotal results 44.78%LummaStealer
2024-10-20n/aexe f203b5df54658f1c7e1d3510451e8e4c19bbee0b175f53ca4eb3f0405024cad2n/aLummaStealer
2024-10-20n/aexe 41130f6088416a8b2a9af1280e8d23ff7911abddc39975f453436c23d4691731Virustotal results 45.83%LummaStealer
2024-10-19n/aexe 6d11db9d9177ff255fa3f286363ca5bda0917d17955c7554e7009c4de2af3050Virustotal results 47.22%LummaStealer
2024-10-19n/aexe eb39a21c898b356433b6e50ae14dcbce9efc10ce20b957a36b106c26e2af75afn/aLummaStealer
2024-10-19n/aexe 29c2fb85a92557459de94309a94bb5cbd94425d3c1859cfc039bae423591b369Virustotal results 45.59%LummaStealer
2024-10-19n/aexe fba3ebbff6756032c1d3b1053f3d563912b44400aa143a4235dffe108de242faVirustotal results 46.48%LummaStealer
2024-10-19n/aexe 46546463f01aec8df3d40e6475349d1777945757ed0093562defb5d6ba79556bVirustotal results 48.61%LummaStealer
2024-10-19n/aexe a2bea49f034829774269cddba43ab7987a4e9818ea18d4727a34ab2591ac2911n/a 
2024-10-19n/aexe a3c51477e4f11ba3204e10204b2c3cbae3fa799b8792d093a37a6b5a27e25a9dn/a 
2024-10-19n/aexe cb90ad14f8fab60d9fae977eab7c5da733aab4a8921ecee011b4483b8cff9c2cn/a 
2024-10-19n/aexe af49ca73938862a51d8f81c4e06f43da2978cc9a8ced8a1fe03d3b0e5168ff38n/a 
2024-10-19n/aexe b74a30d5c8dd4923a1e16a94963e0a7ba27120ac1f90222613f3d7f2ca4f07eaVirustotal results 47.95%LummaStealer
2024-10-19n/aexe 911307287ae7949764487fe516b454ff1a68ac56a1246f379d910117f7a0a05an/a 
2024-10-18n/aexe ba77d65b3ebd95ffab7cc02f4f82dabad6255ee2d2c80ed43242e49dae743d44n/aLummaStealer
2024-10-18n/aexe c86df8b5b6844a8cf1048abb8985f2407cdad39105135f7f49e164dc23575188n/aLummaStealer