IOCs

Indicators for Lumma Stealer

581 indicators · scoped to malware families · back to Lumma Stealer
Live IOCs from URLhaus, ThreatFox, MalwareBazaar, and abuse.ch SSLBL for malware families this tool uses. All indicators are defanged for safe handling.

Indicators

100 of 581
url
hxxp://host4file.cc/load/os1/vibo.exe
family LummaStealer source urlhaus first seen 2026-05-30T19:39:41Z
url
hxxp://host4file.cc/load/os1/beb.exe
family LummaStealer source urlhaus first seen 2026-05-30T19:39:41Z
url
hxxp://host4file.cc/load/os1/U.exe
family LummaStealer source urlhaus first seen 2026-05-30T19:39:41Z
url
hxxp://cloud55file.cc/load/os1/vibo.exe
family LummaStealer source urlhaus first seen 2026-05-30T19:39:41Z
url
hxxp://cloud55file.cc/load/os1/U.exe
family LummaStealer source urlhaus first seen 2026-05-30T19:39:41Z
url
hxxps://www.italiaregina.it/wp-content/plugins/oAjtOHvn.exe
family LummaStealer source urlhaus first seen 2026-04-25 16:19:08 UTC
url
hxxp://45.135.193.114/bot_x86.exe
family LummaStealer source urlhaus first seen 2026-04-16 22:39:23 UTC
sslbl_sha1
272e76f605bec1da1ea719df8dc0e7269de7d44e
family LummaStealer source sslbl first seen 2026-04-15 07:12:40
sslbl_sha1
ab7f083d77dc2b1b71c0aec9a417e0a5a036a5f9
family LummaStealer source sslbl first seen 2026-04-08 15:28:59
sslbl_sha1
7ce02a4df627573696141e40970ef60e246f9f3f
family LummaStealer source sslbl first seen 2026-04-08 15:28:58
sslbl_sha1
f58ffe7484653b53cea539b23da25bc8eeeb2c05
family LummaStealer source sslbl first seen 2026-04-06 08:21:43
sslbl_sha1
2ebb8f663f93eb9c8f169cc09a86f6dba1c85584
family LummaStealer source sslbl first seen 2026-03-28 07:32:21
sslbl_sha1
f05a2876d9129ec057ecaedfac9cc37ebe2138ad
family LummaStealer source sslbl first seen 2026-03-25 16:13:37
sslbl_sha1
460e554589554e5dbaeb2c6f4c6aaf93e31da41a
family LummaStealer source sslbl first seen 2026-03-25 16:12:32
sslbl_sha1
7f065e37b5c0112620f7c97d3cd761e626e0faf4
family LummaStealer source sslbl first seen 2026-03-24 07:48:48
sslbl_sha1
ba19ffedc0a28ed2055127327e4cd6873dcf5a4f
family LummaStealer source sslbl first seen 2026-03-24 07:38:11
sslbl_sha1
ca0c1280a2c26415f8d77ca00a39c6986841da0c
family LummaStealer source sslbl first seen 2026-03-21 10:26:30
sslbl_sha1
fdd41b75b65c0dfb3a3873ddca6d77723a5e92b6
family LummaStealer source sslbl first seen 2026-03-21 10:26:27
sslbl_sha1
0211433cfdfedfc7352c1228fc58d9d2f9d49032
family LummaStealer source sslbl first seen 2026-03-19 13:00:02
sslbl_sha1
8ebe0d48a1178a816162ca9b034b7b653d0fc12b
family LummaStealer source sslbl first seen 2026-03-18 14:31:43
sslbl_sha1
da0f6a5937d3c2d365ffeddb881b4136313e1afa
family LummaStealer source sslbl first seen 2026-03-14 17:16:47
sslbl_sha1
e30905555de39d1e66f834f672f6f14e9106839b
family LummaStealer source sslbl first seen 2026-03-12 07:14:14
sslbl_sha1
f9e8d701de1740086da792e2c9be70df261e1832
family LummaStealer source sslbl first seen 2026-03-07 18:11:53
sslbl_sha1
20f30e05d2a2de117bdad78811946e112dc4dd6c
family LummaStealer source sslbl first seen 2026-03-07 18:01:11
url
hxxp://45.128.118.140/bot_x86.exe
family LummaStealer source urlhaus first seen 2026-02-27 17:55:14 UTC
sslbl_sha1
2987e30402370bdcbf291aedc9cd52a9a79bda0c
family LummaStealer source sslbl first seen 2026-02-23 08:31:24
sslbl_sha1
6fd95f4a2d9cec238cbe2e1756890381c4fae3cb
family LummaStealer source sslbl first seen 2026-02-22 16:10:06
sslbl_sha1
e2293f74d8d72bde90bb0424038259a9e3126e1b
family LummaStealer source sslbl first seen 2025-12-09 15:21:05
sslbl_sha1
69101b8edfa5d5e2ead4512a6d71c84748b0c012
family LummaStealer source sslbl first seen 2025-12-09 15:21:04
sslbl_sha1
1d28cc6dca52e95f859739c39a04d794671f66d9
family LummaStealer source sslbl first seen 2025-11-18 06:30:06
sslbl_sha1
7b7c48a7d10c11ab988801fec68db41f6935ecf4
family LummaStealer source sslbl first seen 2025-11-07 07:58:39
sslbl_sha1
b57cc0f34294222d350c45d62c735547c8882195
family LummaStealer source sslbl first seen 2025-11-05 16:38:43
sslbl_sha1
e26cb841e2adfefbb342442fc67a645cd943b1a9
family LummaStealer source sslbl first seen 2025-11-05 16:38:41
sslbl_sha1
63a759ea1edd5660e73d4706b302dfb2971755c2
family LummaStealer source sslbl first seen 2025-10-26 16:42:23
sslbl_sha1
12003ccd7ea693b739abe8c08dfcaada49ce38d1
family LummaStealer source sslbl first seen 2025-10-23 06:06:42
sslbl_sha1
3ca95d4931548c282db9c3884d76135281a3ad11
family LummaStealer source sslbl first seen 2025-09-25 13:29:46
sslbl_sha1
4614828b77aa3ea3a75e043efdf8183e8a0e4890
family LummaStealer source sslbl first seen 2025-09-18 14:03:47
sslbl_sha1
609516f74b3b47762d5b1a6f7554b09d75cda982
family LummaStealer source sslbl first seen 2025-09-18 14:03:46
sslbl_sha1
bed4bb748bfb98fc0756d0fa95f50d60f91f74b1
family LummaStealer source sslbl first seen 2025-09-11 06:30:54
sslbl_sha1
ef1449034581f9104b8f1d83dc458a632872a8d9
family LummaStealer source sslbl first seen 2025-09-11 05:59:12
sslbl_sha1
ad081f41449e06c8e92c395c57b0bd1e4fdb7774
family LummaStealer source sslbl first seen 2025-09-11 05:56:59
sslbl_sha1
cc6f02c114a6950662f49b7032b7901c38cc20c1
family LummaStealer source sslbl first seen 2025-09-06 06:37:40
sslbl_sha1
d602e76cd1ca37e73d58a6496e6f9c0c34dad338
family LummaStealer source sslbl first seen 2025-09-04 17:34:37
sslbl_sha1
4ffa26fc8898fa59d0c82ff768649559686691cf
family LummaStealer source sslbl first seen 2025-09-04 14:31:48
sslbl_sha1
30b49818742c968be1342a949a1911bd23b36578
family LummaStealer source sslbl first seen 2025-09-04 14:17:15
sslbl_sha1
9d541d42e278bd542a3c57ba584230d63de6d542
family LummaStealer source sslbl first seen 2025-09-03 06:12:18
sslbl_sha1
a42e22cc20f8e907d7bb4d01468929ef466d3459
family LummaStealer source sslbl first seen 2025-09-02 05:43:05
sslbl_sha1
b60218617e52bec3931b0f2ebf5013cbadc8afed
family LummaStealer source sslbl first seen 2025-09-01 09:12:39
sslbl_sha1
497f2c84c223602794cbe4481e2641bdb55d81a7
family LummaStealer source sslbl first seen 2025-09-01 09:04:48
sslbl_sha1
666a7eebb92bc25463267cbfd76a723e4aceb207
family LummaStealer source sslbl first seen 2025-09-01 08:57:21
sslbl_sha1
3cca8cb7ed318a30cf4d69a7425066e1f9e1d56f
family LummaStealer source sslbl first seen 2025-08-28 06:44:19
sslbl_sha1
e82a7a3f490886dfc689887f6eef71db44f41181
family LummaStealer source sslbl first seen 2025-08-21 06:05:18
sslbl_sha1
559731b96b24f1b953b75965978fd694752d5027
family LummaStealer source sslbl first seen 2025-08-14 12:21:16
sslbl_sha1
46cba254d23bd7e646a60c5f5ae3badf07d20516
family LummaStealer source sslbl first seen 2025-08-09 09:34:21
sslbl_sha1
4f77392a6ef2e245d946a4cfc0678827a66c2c27
family LummaStealer source sslbl first seen 2025-08-09 09:34:20
sslbl_sha1
320711e1c61663e80e227827e3202f20ed0ab2c5
family LummaStealer source sslbl first seen 2025-08-06 20:31:24
sslbl_sha1
8ec344c9138e831ab739c22b416293551094c56e
family LummaStealer source sslbl first seen 2025-08-04 08:38:31
sslbl_sha1
64a198f08cbf53e839d4e45015ae3f062354bfca
family LummaStealer source sslbl first seen 2025-08-04 08:15:56
sslbl_sha1
72548212bfca535abbeddc574b99b2486925b573
family LummaStealer source sslbl first seen 2025-08-04 08:15:34
sslbl_sha1
decadd140b395bfa067062af8eaebb4061234e83
family LummaStealer source sslbl first seen 2025-08-03 16:09:27
sslbl_sha1
ad396f061e036cbad87a6171e8ec1d4d83701106
family LummaStealer source sslbl first seen 2025-08-03 16:08:55
sslbl_sha1
9ed1fea23b6b05a5c4f351ac58e6b1be7698c248
family LummaStealer source sslbl first seen 2025-07-29 19:15:42
sslbl_sha1
13ca4983ac42972ec0201ae1350baa210b782ef0
family LummaStealer source sslbl first seen 2025-07-29 07:31:41
sslbl_sha1
d9edbcf7a35af6e3b4491ca06eaf32be71c77f0e
family LummaStealer source sslbl first seen 2025-07-29 07:05:35
sslbl_sha1
456f7003277045054be243d6678db735d2cbacfc
family LummaStealer source sslbl first seen 2025-07-28 18:22:44
sslbl_sha1
eca024b935a6d626c5635319a2d4645dbe2cc7ff
family LummaStealer source sslbl first seen 2025-07-28 18:22:43
sslbl_sha1
743d3905f84e4bcf7ebce6f0c744873c0f7191fc
family LummaStealer source sslbl first seen 2025-07-27 17:57:50
sslbl_sha1
7ccd44d77b64e3967be81d85fcea8f13a40cc4c5
family LummaStealer source sslbl first seen 2025-07-27 16:11:14
sslbl_sha1
fa613f7efc650eeeca04cbedae8431f29118f471
family LummaStealer source sslbl first seen 2025-07-26 10:00:10
sslbl_sha1
d135667b3a95cb7eee34908c06efe7ef9f732b1c
family LummaStealer source sslbl first seen 2025-07-23 07:48:55
sslbl_sha1
31a5f9dcc121652c418f012eab842f3fee50e4bc
family LummaStealer source sslbl first seen 2025-07-23 07:48:24
sslbl_sha1
8dc0f6294c8ca28cb2314a0f5901fc482e304387
family LummaStealer source sslbl first seen 2025-07-23 07:48:24
sslbl_sha1
d61f4dfd2892d8b51656df8d35209cd08dbc7703
family LummaStealer source sslbl first seen 2025-07-22 05:53:18
sslbl_sha1
da9ee0e55adf15aff9c9d2581cbad9c4daa12394
family LummaStealer source sslbl first seen 2025-07-22 05:49:59
url
hxxps://github.com/sid2983/-1aa-Valoranta/releases/download/d0wn10ad/ValCheat.zip
family LummaStealer source urlhaus first seen 2025-07-21 16:20:10 UTC
sslbl_sha1
6ebdec5403aa1c5e3cddf39da5e41c6e34af6ffd
family LummaStealer source sslbl first seen 2025-07-21 12:24:06
sslbl_sha1
b29918f4024f11e06181b0e998187f046262c282
family LummaStealer source sslbl first seen 2025-07-21 11:08:01
sslbl_sha1
8b3baed4f41eadefceea9348302d3aeea0703363
family LummaStealer source sslbl first seen 2025-07-21 11:08:00
sslbl_sha1
de08fecfbace5047baac498e8e43f44efdc05d95
family LummaStealer source sslbl first seen 2025-07-21 11:07:00
sslbl_sha1
bc14df138eb32c75e280ff5a51157f78cf3e80e6
family LummaStealer source sslbl first seen 2025-07-20 15:12:56
sslbl_sha1
2b87167c2c1dc2a969812e065f85260759d86381
family LummaStealer source sslbl first seen 2025-07-20 15:09:21
sslbl_sha1
0687370c542b2c0a895e6aefe03d97551527816e
family LummaStealer source sslbl first seen 2025-07-20 15:08:55
sslbl_sha1
460dc0aa4bb5618fca4295ae1cbdcaf01da25d50
family LummaStealer source sslbl first seen 2025-07-20 15:08:50
sslbl_sha1
ebffcf13aa66274c54cf47615a7cdfb42503ad12
family LummaStealer source sslbl first seen 2025-07-20 15:07:00
sslbl_sha1
53f2c7e4e9501dfb4dcb307af9fc14777d4bfeb2
family LummaStealer source sslbl first seen 2025-07-20 15:06:50
sslbl_sha1
b462e76c6de6db14829247b84e4f78abbdd5340a
family LummaStealer source sslbl first seen 2025-07-20 15:06:08
sslbl_sha1
b10e074ec6690ffba5afc77981e75c2d994534c2
family LummaStealer source sslbl first seen 2025-07-20 15:06:08
sslbl_sha1
247eeb3a4391bb38cc70e5bc58a6e97615d128e8
family LummaStealer source sslbl first seen 2025-07-20 15:06:08
sslbl_sha1
017c827b418444bdfbdd5e6662230b062755503d
family LummaStealer source sslbl first seen 2025-07-19 11:18:44
sslbl_sha1
73f53fcbcab88eeb8673943857d271cf49e49137
family LummaStealer source sslbl first seen 2025-07-19 07:11:37
sslbl_sha1
ae6d9158bbd30e4b4ee23009e7fbfbdd24812297
family LummaStealer source sslbl first seen 2025-07-19 07:11:37
sslbl_sha1
d23d82549b3455204ca05f496473b52108fb13e6
family LummaStealer source sslbl first seen 2025-07-19 07:11:36
sslbl_sha1
71de032ad4d198d3c32227dba510f2cdd3cf077d
family LummaStealer source sslbl first seen 2025-07-19 07:09:57
sslbl_sha1
c2b713c6602e8844e2f4cf10b808031f9b2eebbe
family LummaStealer source sslbl first seen 2025-07-19 07:04:43
sslbl_sha1
ba1c00112c391442f077bfc500edfe7eda35335e
family LummaStealer source sslbl first seen 2025-07-19 07:04:06
sslbl_sha1
1b9c53863c906443722bb1538c57c5f4e20fd967
family LummaStealer source sslbl first seen 2025-07-19 07:04:06
sslbl_sha1
f7f9ca058acc1b2b08dc4dadaa90f4f9adfc44ee
family LummaStealer source sslbl first seen 2025-07-19 07:04:06
sslbl_sha1
dc69100053d3fb7505402e5f91f396c618b74db8
family LummaStealer source sslbl first seen 2025-07-19 07:04:06
sslbl_sha1
3f1bdcfb749f2a5bb6e3c3f3ba483b2c5192ac56
family LummaStealer source sslbl first seen 2025-07-19 07:03:37
sslbl_sha1
f89583c31ec4644554e96e5354901d76a99016ee
family LummaStealer source sslbl first seen 2025-07-19 07:03:31
Showing 1-100 of 581
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin