URLhaus Database

You are currently viewing the URLhaus database entry for http://80.64.18.219/mine/random.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3532666
URL: http://80.64.18.219/mine/random.exe
URL Status:Offline
Host: 80.64.18.219
Date added:2025-05-02 12:03:09 UTC
Last online:2025-05-07 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: adm1n_usa32
Abuse complaint sent (?): Yes (2025-05-02 12:04:09 UTC to abuse{at}stimllc[dot]ru)
Takedown time:5 days, 1 hours, 25 minutes Bad (down since 2025-05-07 13:29:36 UTC)
Tags:Amadey exe LummaStealer Rhadamanthys Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-07random.exeexe 00a1c9b1fd22191aae89c1c94bd11a852752c94e621856f2d4fb0b3e6f74a154Virustotal results 55.56%LummaStealer
2025-05-07random.exeexe 12ce564d8d9f65a1f23c14e1ef798b58133d480e27af8b4857c76c096482b4can/aLummaStealer
2025-05-07random.exeexe 2ed5e3c790f9ea66692c37b85693cf3537eb23a278e438b212f1469f31681ac3n/aLummaStealer
2025-05-07random.exeexe cb6404f5fd4a55a47b0313b7716fedcf2186f83697a85edd195675a7e3f7f535n/aLummaStealer
2025-05-07random.exeexe 6b3ee64795670e1ffef5b2674aad40cad9a38ce5aaf59070d2f44e05446ecae4Virustotal results 55.56% 
2025-05-06random.exeexe f9a6fdba1540c6dcc5d2f0c88a8aed57f346a551cef5be57bf147c5b77f66f7an/a 
2025-05-06random.exeexe de16369161a901cfbbab553509ee99dfd135681ffe2df7bbabfb4bd3d42a8badn/a 
2025-05-06random.exeexe 8024194b53520a19c1595698463f1cbbf3c9c06462b09a1758b8baf3429350een/a 
2025-05-06random.exeexe 0f8c921ad53f9130ee164acd9813e6586a14c45a9ca1d38045e45d8755a0b0e9n/a 
2025-05-06random.exeexe 1b5b7b9492cc66924f06a62bbfc7b614a42e35d1af098dbf55d9b539e36897cdVirustotal results 56.94% 
2025-05-06random.exeexe a8f52bc2e6a45cb2850fb7e27c180a62449bd1232e6598272dbb307cd6991652n/a 
2025-05-06random.exeexe 0bbbf51ee3c9470f17fda1f757b131754c7750d8f077f1d6481e8d5d7ece1357n/a 
2025-05-06random.exeexe 2613b82e3e0959ace52a08c36e42be611be980395490faaa6762d3aeaf233753n/a 
2025-05-06random.exeexe cd4d50a843c72816d0e7ddbc33123c4939bf70942e7d0edb2eb5728cdf0f1006Virustotal results 54.93% 
2025-05-06random.exeexe 192ab198d7673c48145a2cb679b7486e7c4268d7178d1466add685e2af322e0aVirustotal results 59.72%Rhadamanthys
2025-05-06random.exeexe d09b469690ddb30909bf55d9291d1b40b43ac977ea0c7aa086cc79370f6e19c9n/aRhadamanthys
2025-05-06random.exeexe 36dc0b00d813e9259d5a649237eb80387ac778543f3b99ce1ace6c1a48ed3e3en/aRhadamanthys
2025-05-06random.exeexe 38fc71ebe2e24df56da9406564e4f94981efbbd36b0ce778d251afda7e3b89c3n/aAmadey
2025-05-05random.exeexe cef8c4827c5ffc06d8f5088f41e0ab121bf75b0163a89600168fe95ca4218868Virustotal results 55.56%Amadey
2025-05-05random.exeexe 2792baa9e19d523101a41067bdcb82552861014bd0c8635989135302ba11856an/aAmadey
2025-05-05random.exeexe f876f17d66f962a74d6e094e47a78e193e11b909c291ff6432c00e3398c1508fn/aRhadamanthys
2025-05-04random.exeexe 18cca1b2fb73aab59c6d280c6226aa29082706f2ee8fe26bd9327a30197e0d44Virustotal results 52.78%Vidar
2025-05-02random.exeexe e29a3db17025e34336b10d36e5dd59ff5d1ac07ada8df0cddba0d3f3db689f65Virustotal results 77.78%Amadey