URLhaus Database

You are currently viewing the URLhaus database entry for http://5.252.155.72/load/hjbk.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3853315
URL: http://5.252.155.72/load/hjbk.exe
URL Status:Offline
Host: 5.252.155.72
Date added:2026-05-26 05:06:07 UTC
Last online:2026-06-24 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-05-26 05:07:12 UTC to abuse{at}altawk[dot]com)
Takedown time:28 days, 20 hours, 0 minutes Bad (down since 2026-06-24 01:07:47 UTC)
Tags:ACRStealer exe LummaStealer opendir RemusStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-06-23hjbk.exeexe ea61f6ee97193e0cdbb8f45c4baa3076443210412e72afed84106383c29753dfn/a RemusStealer
2026-06-22hjbk.exeexe 97d5cc4d2f55fd89a6837106d0b267372cd5da289cf76c7e1f3be5e38d01cbbfn/a RemusStealer
2026-06-21hjbk.exeexe 2decf39742297fcbd42da77bf4f89e285937d493517d938e8b5b8e72fa4d78d4n/a RemusStealer
2026-06-20hjbk.exeexe 53054f72be5cb3911b3da100deb3085615593ec937bfb033bd3cda80f76cf38bn/a RemusStealer
2026-06-19hjbk.exeexe a8760de45ed2bdda90fea6b136b5a3c5afdfdce4c1b05d3c4ab76e92f308ae36n/a LummaStealer
2026-06-19hjbk.exeexe 009b2025c43202f2c643e46d27b30ca5e0f33b7da37841a661838aa07ac34938n/a LummaStealer
2026-06-18hjbk.exeexe d4ad21a0ab039ad4c03234e902134a1b17adf2969e11032811c01d758e5915c0n/a
2026-06-17hjbk.exeexe 4a980348498937b750dc0458414d8428c488ba602aa77ce4447c9d4d87741706n/a
2026-06-17hjbk.exeexe c439520d25020b8110676ea0f838181ba1fe4f3e63c5401f130160565179321en/a RemusStealer
2026-06-16hjbk.exeexe 1584ea897efd531f48238cdd41468828de5e5a6382b0585c463ca1868f8b391dn/a RemusStealer
2026-06-14hjbk.exeexe a2df0c26bf1a5292ce5d4a2f2a41397478090da65f80d10902be6ef2c6b50fafn/a RemusStealer
2026-06-13hjbk.exeexe 14586dad8256c645f8195be20f4fcc327503649c72eb69f5280fcbd1c5dcc833n/a RemusStealer
2026-06-13hjbk.exeexe ed6505f73fe3f84d1017dfda5e46c9d9f287a4b891b12ffcd5b790c9852cd632n/a ACRStealer
2026-06-12hjbk.exeexe 0eea06cca3692150afa278e09c2dc8a84c2867712f4483f08d1f629c3e24499cn/a ACRStealer
2026-06-11hjbk.exeexe 85e9c56646b76b89ae6e03480a732fc85a6ea6be3e6655adc55218d80ada53fen/aACRStealer
2026-06-10hjbk.exeexe 269b8dc7ab80511626b87f4316ed0ab84ad97f71162ef34b27054522216b57fan/a ACRStealer
2026-06-09hjbk.exeexe ed617bb7ec4a23a73cbe8807547737856b5905d671ac9acb286052c6f9706697n/aACRStealer
2026-06-08hjbk.exeexe eabf8dae42182c2829e7d989efdd2391e6ad624ede7872d7820f0b23de319b74n/a ACRStealer
2026-06-07hjbk.exeexe 45e3299d3596ac1f1e0968f37cdbf293f8d8454d2869ac2fea30a87faa546c38n/a ACRStealer
2026-06-06hjbk.exeexe 318f719b357bf339e71a2406ad4d6203f8509e34ae670cc3aba9a426f21d04c7n/a ACRStealer
2026-06-06hjbk.exeexe d1e0e23dfe9a0f2f040e27e450306614f58329cd393e15d98f15ee3047ac7857n/a ACRStealer
2026-06-05hjbk.exeexe 56281fe51ec4549b60f61e4c944b9ea1428e9719c84937b229afd0a83e821016n/aACRStealer
2026-06-04hjbk.exeexe 794a509f50ef9fff9576763e8bf45a38037cff33a9d7cc285bffd7aea3289fafn/a ACRStealer
2026-06-03hjbk.exeexe 984ee5dd15315636d9ca4c66ba8ca958a5f8236ec4a8ecc623677c1ea0fb9641n/a ACRStealer
2026-06-02hjbk.exeexe e97c3617d4c412c5124724b5004018d9044ac3945de6e65e832c385e104796c7n/a ACRStealer
2026-06-01hjbk.exeexe c9cd79a1c1c1e36c995546def15af0b08549178e17e33cee9b190c8a91be22b4n/a ACRStealer
2026-05-31hjbk.exeexe fd3cb6c3a098640d8ade0f24fb56897927ae24648e2864d8034bb8b3efc73d19n/a ACRStealer
2026-05-30hjbk.exeexe 6b2aabc1090d3598e6da821ae50421212782610a1f16a0fc5da863aacdbdfa37n/a ACRStealer
2026-05-29hjbk.exeexe d9aff50ce278f481649acb776de0c2350c410249d97781cb33da92098fa330f5n/aACRStealer
2026-05-29hjbk.exeexe f86ecade778fa6ff57b8d0bddc4197bf34fa4702c6276109e9c987a7c414584cn/a ACRStealer
2026-05-28hjbk.exeexe 55c7b5643f0b2b8b0edc8767e5c8700ad94523c43f9d41833a0e5772ccc0e608n/aACRStealer
2026-05-28hjbk.exeexe f668de57394d23a70ea59fcf2039b14ad28a479d59e4dc06ed31c64d740be30cn/aACRStealer
2026-05-27hjbk.exeexe f878ce4b42c28ce8ac4e965c550988c2f7ef753d4a39888f103c39f7e6222ba6n/a ACRStealer
2026-05-27hjbk.exeexe f251271a7492deec499dbe387d5b0500ef3fe2bb8f8b0d86940bac97c11f7345n/a ACRStealer
2026-05-26hjbk.exeexe 350a2b69e5de4c35dc2b9592e145ff425373356cb2fed475716e1bf7455dd802n/aACRStealer
2026-05-26hjbk.exeexe 90d54589bfae10deb74fa349668a5af649c546b8eddb75d5000174601920cf77n/aACRStealer
2026-05-26hjbk.exeexe d5655568fee9c610139d41d367afc74e768e1c8baf70e37912e9ebeb27b5d411n/aACRStealer