URLhaus Database

You are currently viewing the URLhaus database entry for http://185.156.72.121/luma/random.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3540278
URL: http://185.156.72.121/luma/random.exe
URL Status:Offline
Host: 185.156.72.121
Date added:2025-05-10 07:01:10 UTC
Last online:2025-05-26 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-05-10 07:02:08 UTC to erishennya[dot]res{at}gmail[dot]com)
Takedown time:16 days, 4 hours, 51 minutes Bad (down since 2025-05-26 11:53:58 UTC)
Tags:LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-11random.exeexe bf88760d3c8d995dc3f54026a485ab029ccd44a47ba7d81a9b5c0bd6a11736d9n/a 
2025-05-11random.exeexe c1c042539d2ced89c1d9f6d5e59aa107074e4dec28326caff4ef105515850cfan/aLummaStealer
2025-05-11random.exeexe 96c79210cdd2edca6c0ef8de0a87052ed57244c6848a69e15a0659748f90ea2an/a 
2025-05-11random.exeexe 4d2cbd028a332c015dc0ef59652713746fc3147c2e21ac67fde10b497d595eden/a 
2025-05-11random.exeexe dba84f17664bc0cbb74ba536840120382fa709cc35859c1b4af84f5f3c9aed68n/a 
2025-05-11random.exeexe 252cb6c2b0fcfc7a1a4b7716fbf42dac461a716b8d10170a8287b50adbc406e6n/a 
2025-05-11random.exeexe 1b4972076b3097f178478a83de0b80e2f85740a02fd4c6c89ee47969543cc134Virustotal results 51.47%LummaStealer
2025-05-11random.exeexe 9905365a5a27296efeaac110626c79ebdca188077ec7f90b0a46bd8f6c8ef993Virustotal results 63.89%LummaStealer
2025-05-11random.exeexe ed8dd9ffa8d03a4ac804600448676425caa10331af95b32dec7e31ddf5417190Virustotal results 59.72%LummaStealer
2025-05-11random.exeexe 527214f65d4c7aaaa21db80291a9d37b9625583f5ba60b3de2226c03713660b4n/aLummaStealer
2025-05-11random.exeexe 05cd844545f7741d2b822a7e96bb86000eb5c9b3c91876ed3e5a956338eb1d13n/aLummaStealer
2025-05-11random.exeexe 7a9dffbbf917a4645a525d10a9de269c415a62f25301a1667b4d436edab42be9n/aLummaStealer
2025-05-11random.exeexe e625f314b22f3de25830e42869834d99ee2228d2b3fdebd9fe9d29beca667822n/a 
2025-05-11random.exeexe e510808c4b73c5097cbd67ad1b3c5798fa6987e30b8522d5cc145a7ebd1401a5n/a 
2025-05-11random.exeexe d93b6d360d073fa05dd51270aa30ad9d0cf603e06f8853beaa4cc24bf532dbd1n/a 
2025-05-11random.exeexe 78d143dcddbc4f0d9ff26fbddbcd067234233f07c6fa6a1c5aaa9ca76195577bn/aLummaStealer
2025-05-10random.exeexe 2bb7269a4f8a29036bc7b08338941fc669f1ab5d7d62879cbb0f10c6f9b39d06n/a 
2025-05-10random.exeexe cceacc4244378e9da11ac497f094a597ab3a04d6cf40e88e47bd4743c27be723n/a 
2025-05-10random.exeexe ada47d7988a820a533f3fe2de889c62bfd18382ccbdf7c600bc72d1a7dfed646n/a 
2025-05-10random.exeexe a36e03e286f46259a47681d46e7cb983f40b3b3111ae3ad446ec3fbe8f3e438fVirustotal results 59.72%LummaStealer
2025-05-10random.exeexe 3ce9f3a32ee289cdf17318375dae713659e8ff204ec555c4766491946445700fn/a 
2025-05-10random.exeexe b0c8dae884a836cf8bacd7b0b8b96a554d8eae9b0561328f68c4e6ab0486211eVirustotal results 58.33% 
2025-05-10random.exeexe dbf9f5b64ca7cae1cbea9ec951649d5e563f66d8fc2d52f695e8fa9e714c3d8dn/a 
2025-05-10random.exeexe d272104feff0821a9bfa750f2372e2c1dc40672ab9b86b6a21ec7e8d65169a96n/a 
2025-05-10random.exeexe e71c4c3857aa3c719532d81a3ba58bfea2cb5ecf525f23a214b6aa9b997d335en/a 
2025-05-10random.exeexe 2e3ff08c40cbfbf4fcbef482633d8b8bec87a7826f8d467125fb790ca837aa6an/a 
2025-05-10random.exeexe bc3190a9223e461e1beebe4890bf4f9bada77029b367999a2ccb96f3fc23b9d7n/a 
2025-05-10random.exeexe ad6bd004cc86cd7a62e1bec8a909f51a6a5d00efa7aad8f610d7bb395d5899afVirustotal results 50.72% 
2025-05-10random.exeexe 3b0635f7923c2242c2cbed93a13921d06c3cbca8b53057c031db3681eb7e01d7n/a