rebuildhurrte.com
Classification: Malicious
rebuildhurrte.com is a malicious hostname. Linked to Lumma Stealer malware. Reported by 2 threat sources, last seen 2025-02-27.
Current activity
- Online β resolving/reachable. Last checked 2026-09-21 12:37:43.
- Command & Control server β Used by cybercriminals to control victim computers.
- Malware distribution β This indicator is distributing malware.
MITRE ATT&CK associations
Malware families: LUMMA STEALER (S1213)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Lumma stealer | Maltiverse Threat Observatory | 2025-01-25 19:05:08 | 2025-02-27 02:30:04 | S1213 Lumma Stealer | |
| Lumma Stealer | ThreatFox Abuse.ch | 2025-01-25 17:33:26 | 2025-01-27 17:21:29 | malicious-activity | S1213 Lumma Stealer |
Tags
lummac2 stealerIP addresses resolved by this hostname
- 172.64.80.1 (2025-01-31 00:40:35)
- 9.83.176.46 (2025-04-11 12:34:53)
- 40.91.108.115 (2025-05-06 20:06:56)
- 52.191.175.126 (2026-09-21 12:37:43)
Whois information
- Domain
- rebuildhurrte.com
- TLD
- com
- DNSSEC
- ['unsigned']
- Nameservers
- NS1.MARKMONITOR.COM, NS2.MARKMONITOR.COM, NS3.MARKMONITOR.COM, ns2.markmonitor.com, ns3.markmonitor.com, ns1.markmonitor.com
- Registrant
- MarkMonitor, Inc.
- Address
- 3450 Sacramento Street, Suite 405
- City
- San Francisco
- State
- CA
- Country
- US β United States πΊπΈ
- Contact email
- [email protected], [email protected], [email protected]
- Domain created
- 2025-03-27 22:06:32
- Domain expires
- 2027-03-27 22:06:32
- First indexed
- 2025-01-25 18:17:24
- Last updated
- 2026-09-21 12:37:43