URLhaus Database

You are currently viewing the URLhaus database entry for http://176.113.115.7/files/7834629666/VBUN8fn.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3452795
URL: http://176.113.115.7/files/7834629666/VBUN8fn.exe
URL Status:Offline
Host: 176.113.115.7
Date added:2025-02-26 07:41:07 UTC
Last online:2025-02-27 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-02-26 07:42:05 UTC to abuse{at}starcrecium[dot]com)
Takedown time:1 day, 3 hours, 10 minutes Poor (down since 2025-02-27 10:52:53 UTC)
Tags:LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-02-26n/aexe b5713079bc540d78a13d71edfe7387f97d771a3f30305a5b2978d77829ead3b1n/a LummaStealer
2025-02-26n/aexe a57f2d5d623439d54d5a8089426c6912e2e35b1087ce4b5615f2eae80730a814Virustotal results 18.06%LummaStealer
2025-02-26n/aexe bfeb030bd50b171b8487a2a34d2361556ddfe340ea877c764a40984f1c037eaeVirustotal results 34.72%LummaStealer