Login for search help

Payload Details

First Seen 2025-01-05 (Login for timestamps)
Last Seen 2025-01-08
SHA256 558fe8c705bbd035f886cc02acee3fdfa50398e74795f62d182e01225d58e2e2
Filetype PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows, 4 sections
Size 349,696 bytes
Distributed By Amadey (Login)
Countries Unknown Country Login for country information
UnpacMe ID 29f96817-5db6-461f-9dcf-61a8c1ce2dc7
UnpacMe Detections TYPE:INFOSTEALERMALWARE:Lumma StealerRULE:LummaStealerCONFIG:LummaStealer
Sandbox DetectionsYara and Suricata matches Unknown
Malcat Kesakode Unknown
Download

Monitored Sandbox Execution

Login required

Non-Monitored Sandbox Execution

Login required

Tasks of Origin (8)

First Seen (UTC) Last Seen (UTC) Family Botnet Exit Task Data View
2024-12-112025-01-13amadeyLogin
Unknown Country
http://31.41.244.11/files/fate/random.exe
2024-12-102025-01-13amadeyLogin
Unknown Country
http://31.41.244.11/files/fate/random.exe
2024-12-102025-01-13amadeyLogin
Unknown Country
http://31.41.244.11/files/fate/random.exe
2024-12-102025-01-13amadeyLogin
Unknown Country
http://31.41.244.11/files/fate/random.exe
2024-12-102025-01-13amadeyLogin
Unknown Country
http://31.41.244.11/files/fate/random.exe
2024-12-102025-01-13amadeyLogin
Unknown Country
http://31.41.244.11/files/fate/random.exe
2024-12-102025-01-13amadeyLogin
Unknown Country
http://31.41.244.11/files/fate/random.exe
2024-12-102025-01-13amadeyLogin
Unknown Country
http://31.41.244.11/files/fate/random.exe