URLhaus Database

You are currently viewing the URLhaus database entry for http://5.252.155.72/load/ojujn.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3853311
URL: http://5.252.155.72/load/ojujn.exe
URL Status:Offline
Host: 5.252.155.72
Date added:2026-05-26 05:05:18 UTC
Last online:2026-06-23 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-05-26 05:06:11 UTC to abuse{at}altawk[dot]com)
Takedown time:28 days, 17 hours, 38 minutes Bad (down since 2026-06-23 22:44:58 UTC)
Tags:ACRStealer exe LummaStealer opendir RemusStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-06-23ojujn.exeexe a4a07226435c303cea77b99c9cf13f5c944d869b9ef9c729977942bb6d291503n/a RemusStealer
2026-06-22ojujn.exeexe e747889fd668f0afe42f439e10fb16b8ed8dae4f5321fdda368965a1d5cc3d6fn/a RemusStealer
2026-06-21ojujn.exeexe f32eb9c6f0e600d49750ce96e64991dab7424aa92332fe92520569869a3d1c59n/a RemusStealer
2026-06-20ojujn.exeexe 374b7151463dffec6f7ae9a5ab73760e53a99b5cd29ffbb8b90936f33440e9f0n/a RemusStealer
2026-06-20ojujn.exeexe 61269eca1d774d5e3bc5fb9445de05bb7b0f9057876a9ef7779ecd5ca1582accn/a RemusStealer
2026-06-19ojujn.exeexe b9b7602e0b929dd2bae9e87b53d5ab1e0a236fe466ea4628c3b8fc32cc2ed899n/a LummaStealer
2026-06-19ojujn.exeexe 9817c80e1108f291efd2eb04a7b5abc8ca5895788b8a3934d1c3dded97d4b124n/a LummaStealer
2026-06-18ojujn.exeexe 47b98c99d290618540083c6de80ffe770425eca86892ce5a450a422d6a560c0bn/a
2026-06-17ojujn.exeexe a9cd794d41cf7f9e7a10f5b2baa014b3c626a660f876d08a7a64bbf9350b639an/a
2026-06-17ojujn.exeexe 470d9d97af321ed572544ef3f1e3a71b54e17650f9f495e26410c93fca0a0b06n/a RemusStealer
2026-06-16ojujn.exeexe 3249f57feb86ee38fb41acae00d1148125caf75da4c02b9e095c9b3669d14385n/a RemusStealer
2026-06-16ojujn.exeexe a52933bf9cb70a3955af21a74c486117d2b75d08f5c73557e2affba9acb6c0abn/a RemusStealer
2026-06-14ojujn.exeexe 479592de923ad59c86dd0bb22a9764798331bbd88b3922395c8bf4f69ad72ba5n/a RemusStealer
2026-06-13ojujn.exeexe e7b999184fe1dd10a5018bfe049ba961059df4b3e826393bb7886abb82956b80n/a RemusStealer
2026-06-12ojujn.exeexe f972c120c35790e208844c5a35f2eb19876923a43dca2bbeb0ee1db4694a8994n/a ACRStealer
2026-06-11ojujn.exeexe 0525e8157e950d7519d3f8e07cf5f2f0197eaf8fa7b5fef273a887998f8d204fn/a ACRStealer
2026-06-10ojujn.exeexe ca9989772151311e711024156a103f572cffad59154c175f61dec0c598a2328en/a ACRStealer
2026-06-09ojujn.exeexe 609914f1fcde5f07140dadd9dba2cc64515fbbe2eddabe2840ae99bd4932ea41n/aACRStealer
2026-06-08ojujn.exeexe 6eb0ec78ae20e97ebb123b6b84aefbfcc05309577bbd26078475e894acdd213an/a ACRStealer
2026-06-07ojujn.exeexe cee2896e48b9bffb1abc7b1ffd8b89d2c1cb6334ca6bf5412f5f529faf2003e7n/a ACRStealer
2026-06-06ojujn.exeexe 78f85d87fbfde83c2f3b2dfcdf49a1b3ea2b8ab335372b78ca607306d1c06d4fn/a ACRStealer
2026-06-05ojujn.exeexe f63c6700dfdbca563c741c862e159d2cadf669b386dc0cf7ee1aea57f10bf7d0n/aACRStealer
2026-06-04ojujn.exeexe 6f907991f517984c323fd51dc6b7ffab133d8f699d09728ca5210d7608e73664n/a ACRStealer
2026-06-03ojujn.exeexe 50bc7a1a841834221ee2b79c17ee0146686c89bcd100d5ab6348fd2b75c539cdn/a ACRStealer
2026-06-02ojujn.exeexe 7cf4b82ba41d6bd39079cd0040fff56513d6a79eaccfdc8d167f24ef7af24e7cn/a ACRStealer
2026-06-01ojujn.exeexe f69103a3c4eb99e59e5f421f46c49da3746ee90b20faa176b5b6d9a8fae550f7n/a ACRStealer
2026-05-31ojujn.exeexe c21f89337f8adad8ff38b82aa4b7d04cb6117c77ab05f3a6220799fdcbaa4750n/a ACRStealer
2026-05-30ojujn.exeexe 70c40100f0940093d922069ef08c1670a60bee56770cb296693f45504127531fn/a ACRStealer
2026-05-29ojujn.exeexe c25d942315b926dab7c1a3aff907891b0f3c7db6ff809d3399b6af6c4d389c67n/aACRStealer
2026-05-29ojujn.exeexe 89ff4418a28e5c804ca2a4fb486f5dc67a17c6b3e97ae231566cfc313b809376n/aACRStealer
2026-05-28ojujn.exeexe f258a5d72c7058a6d4f424b2c9bf0dd96a7ab8e4548ffc9f645f2da17cf64a29n/aACRStealer
2026-05-27ojujn.exeexe 3b937e02a557993cb4c0919da1c01d5c00863dbe474a54744d126eb9f19e0b20n/a ACRStealer
2026-05-27ojujn.exeexe 76a51fb7d82bcdb120f3128172ec5682f630789b8b4aa9450dc65184ea3a15e6n/a ACRStealer
2026-05-26ojujn.exeexe ab9f6e17e46f95364f6704db5003993cbd384a5fd61f99ef9a0f10113dce6ab9n/a
2026-05-26ojujn.exeexe 040e0d767faccb2b706ec81553b14743f1d24f508c69bb5921716bdeb14ca1cbn/aLummaStealer
2026-05-26ojujn.exeexe 6871848bb724a184e393a734c9de9c17c41da1f26359755696f0df40685c42f2n/aACRStealer