URLhaus Database

You are currently viewing the URLhaus database entry for http://62.60.226.24/file/expt64.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3374242
URL: http://62.60.226.24/file/expt64.exe
URL Status:Offline
Host: 62.60.226.24
Date added:2024-12-23 19:44:08 UTC
Last online:2025-01-11 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: DonPasci
Abuse complaint sent (?): Yes (2024-12-23 19:45:23 UTC to abuse{at}as214351[dot]com)
Takedown time:18 days, 4 hours, 48 minutes Bad (down since 2025-01-11 00:33:31 UTC)
Tags:Adware.Generic exe LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-06n/aexe a2a964662b9ac70ecd728977187e51d979f9b9116b0389e4f902581a3b036d17n/a LummaStealer
2025-01-01n/aexe f8ac1e7d2eb237ca0f85ce9e7c20b78d765743d88a10522769f035e7066e7f23n/a Adware.Generic
2024-12-23n/aexe a42ce4178e7dc0be9b8f8b91ef4af38e05c66c587b7ae80840cc60f45051d773Virustotal results 15.28% Adware.Generic