URLhaus Database

You are currently viewing the URLhaus database entry for http://185.11.61.10/ScreenSync.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3423144
URL: http://185.11.61.10/ScreenSync.exe
URL Status:Offline
Host: 185.11.61.10
Date added:2025-02-01 15:14:17 UTC
Last online:2025-03-31 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-02-01 15:15:07 UTC to abuse{at}changway[dot]hk)
Takedown time:1 month, 27 days, 23 hours, 54 minutes Bad (down since 2025-03-31 15:09:08 UTC)
Tags:Adware.Generic exe LummaStealer Socks5Systemz link Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-24n/aexe 8044ef90039da44bd84ba788ca28ee0648e0672b2b6531af0c1f2961c1ae0ad3n/aLummaStealer
2025-03-20n/aexe 377901932b167a333b9ebf3180ffb75ac51cfd82ee0ed1cc19f8f4c0e6192f13n/a 
2025-03-18n/aexe 785c32a65738f3aff0a7dcf1e12f0f852a7e517672e8c18172d6e59bcb2ce0efn/aStealc
2025-03-17n/aexe 2f3f2828c3a7ddb8e315987ae344bcaeb36187af761e541cfdfbf5ff18f6ac70n/aLummaStealer
2025-03-14n/aexe 5c3b00c5e03044eb14b31ee207e3c7c0479c58a837f64ab7462f6b3af6e17967n/a 
2025-03-10n/aexe 9a2163b925e9ba9aa6e17b0e6c813c36f0dbc3f2b8c6e74d1005553aca99e22cn/aLummaStealer
2025-03-09n/aexe 8afbf1b65a59ea3640491afc195336a9b387367d38277ece19603ba8c09d14e4n/a
2025-03-08n/aexe e52d43fb5ddc29ae8b843f40e8fa8eab605f8368f6ed9994e5cdcf3c0e2672d2n/a
2025-03-07n/aexe 293edde448961b2701124a6acc65d4e19069c2bda0a7919f78b6c6c07f413ec6n/a
2025-03-07n/aexe 76a5adb25009629ee841d72e0d5696fc452ff326c93ee51a62b084845d4a606bn/a
2025-03-06n/aexe 3ea35e160019843f25902ed0ef23d7b5b86cf7d00a42e1b239ed94585fb37541n/a 
2025-03-06n/aexe 1b72ba830a2c26b9379a7b159a2322e9de1a37d6f7db9d2664d3f31c4f855a6an/a
2025-03-04n/aexe c69b0f6f5c792fb861fd7a9f8373fd5bfc7f0a9d1c737c8648dd71be1b0df330n/a 
2025-03-04n/aexe cc08c9cb257b6388b7dcee5c9c58faed0986527c64d9e424c7d6e7a39d7e658en/a 
2025-03-03n/aexe 2559dd76751ae9438cd4dfa82f607d2b10142250859936391a90dea41dcd4839n/a 
2025-03-03n/aexe 0d89dba97f5dcdb875bc5718ad982d240b89faf6f21abd1c780bdfd5e49bdea8n/a 
2025-03-02n/aexe 2dbee53254197ee152a22c36a892da2ac2106976487c82fe06bd33ca23e64f62n/a 
2025-03-01n/aexe 640eb20fad725bf4efd78b4b3515b69440b6216972f41a2e67225eec05935a9fn/a 
2025-02-27n/aexe 082f185c18cc38ce67e76c81d3f5256c6e2912f6f9fe5576f44f68b462094802n/a
2025-02-27n/aexe 210aa5ce8e7ce6a2873d06fdd5a5204b74a35f3b99ff4edad6f308f7ca2751f1Virustotal results 19.44% 
2025-02-26n/aexe 49176f4e7816703c759952125f148e7b2e609face6ddeabda32a592bda0948c2n/a 
2025-02-26n/aexe 0f50874d9bcf74f92ffd4091a8c821eaa58fa29f0db5c4dd49a4981fb1a5c8d1n/a 
2025-02-25n/aexe d242842738d11a34e8ea266f2b5c956b00427d18b01a27c1d8ca798962316267n/a 
2025-02-24n/aexe 9a3c0bc8b02b5052d1c37259ab008ee26e85f4e689ed269aaac4fda97ba83f9fn/a
2025-02-24n/aexe f97e66d58acc38b5f761f5384dcb2c62ced13e6f6ad2c4a8f507318e584cc5aan/a 
2025-02-21n/aexe 22684c4b7aa73e9fadd5fe58490178ac3e27e6ecd73e5eecc5103e9250363b88n/a
2025-02-20n/aexe d45f5f5f47efe83cbd25091de7319fe9c4556d0fb29e51b01e295b3d84c5e34en/a 
2025-02-20n/aexe 287cfd980e61731c86099576153c587f97107787e3e60cc789fb39b76d9a5ecen/a 
2025-02-18n/aexe 66b2f2ae663a0e8ebda80f649413b2ee33b35085235d0c372482a611ab7b19abn/a 
2025-02-18n/aexe ac071be27a693b5588e0a78f55cb16dade2b2eaf6730ff8836515d8b858b357dn/a 
2025-02-17n/aexe c9398d4d23b1de113eaf965f0e9cb3433cd15472c997c885b2fdb4c68420f233n/a 
2025-02-17n/aexe a907fc434fcecbba343c952c2616705793ee3dd8ad44e43756b8ca7a3f8e9b32n/a 
2025-02-16n/aexe 206559b47dfa7ffc7a40724ddc89cc75c7a068b60cd7d87319157d29438cc5b0n/a
2025-02-15n/aexe 181793701ae1ff0aef41b7ca7527eed265f5926b34421fe904a4454fdd31c547n/a 
2025-02-14n/aexe 0fa985657700cf3dfbffa5de884dfc57d9744434441a765d292e050a6f606875Virustotal results 27.78%
2025-02-13n/aexe 09c5a7f6b7ac7e052e3a2fa65ae98c5231bce81299eb0dea35236dfcb87e4ad5n/a 
2025-02-13n/aexe c1c10ee5b3ddc4c7ccc74436d9ce4bcca7fd50e8b8fb412cacff069e63a2f686n/aLummaStealer
2025-02-13n/aexe 57d10db91f3a302020aa4ac42d037def3ede745757287a0ccd938e44434d8b20n/a LummaStealer
2025-02-11n/aexe f8b47621b84c0c7be6a7ff5cab6c605970a2112dcd57ecd204525507147894cbn/aLummaStealer
2025-02-10n/aexe bfeff86e27a0c15e25d0214f9a5b13cc975dcb6e51031a0ecf5fa232dcfa9de7n/a LummaStealer
2025-02-10n/aexe 6dfcfa416da6b224ad8c62d698ba4a4841d0725a12f190a69e9724f44232da30Virustotal results 16.67% LummaStealer
2025-02-10n/aexe 6d0aa2bf362b41b35dd4812594340a77235b21f87add10dea8e7af1282877db2n/a LummaStealer
2025-02-05n/aexe 30ba7c82fc9480fbd64ec09bb95045a1c47199b1b566666fc5f57a502f30cfbeVirustotal results 59.15% LummaStealer
2025-02-04n/aexe d0016689b30ef26fe2a468ca40391cb47e1941f38e61d20bcbf006729a42b423n/a Adware.Generic
2025-02-03n/aexe 20cb139ed7ffb24b0dd07fb7b712827799754085664de599e45867fca2ff8980n/a LummaStealer
2025-02-02n/aexe 063aef3d73a89f818e3c2aebc5f7cfcdb2a1d4584967cd15157e78b16e348469n/a Socks5Systemz
2025-02-01n/aexe adbd59490a2ee2a7c17ab651dbfbf3323494b9677dc1f5ee627c8c6fc920fa6dVirustotal results 67.61%LummaStealer
2025-02-01n/aexe 845904ce5d6f1f13878b0f2676ec55aba68fd2c1bab91c0559217f225044b48en/aLummaStealer