URLhaus Database

You are currently viewing the URLhaus database entry for http://bdcvpn.com/images/logo.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2786389
URL: http://bdcvpn.com/images/logo.jpg
URL Status:Offline
Host: bdcvpn.com
Date added:2024-03-18 19:12:40 UTC
Last online:2024-04-05 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2024-04-05 08:10:15 UTC to registry{at}stc[dot]com[dot]sa)
Takedown time:17 days, 17 hours, 53 minutes Bad (down since 2024-04-05 13:06:36 UTC)
Tags:cutwail link dcrat dropped-by-SmokeLoader LummaStealer NetSupport link PureLogStealer RedLineStealer link RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-04n/aexe 245024628c4c6fa07bb85315c4333bc90bc3be9d79b44990b0d006ccf29963d7n/a 
2024-04-03n/aexe 100e0d20c509e3a5d1b887228f935229e4c1c05b37deeef9a9ec4317a949134an/aRiseProStealer
2024-04-02n/aexe 990943455cb0d2dc807360dd6e9f302edd2ab257d37e968c9fa5d7003970f3a2n/a RiseProStealer
2024-04-01n/aexe ccd4e348aa248d1d9153f8960d60c83b57c8f62a2bec7f874c8f39cbaedc5863n/aPureLogStealer
2024-03-31n/aexe 7eb9327b1e9279bd1555a58930fe5bc72c729a06b155154aa733a89dc2a6ac31Virustotal results 62.50%LummaStealer
2024-03-31n/aexe b706a1a67f20b5e029c058de6a1e681a36fea762f69b9d983921d0e47ec2bc6cVirustotal results 61.97%DCRat
2024-03-30n/aexe bd3cb7333a97c82a6ab1939e343d2480bd60c4f643a61f6fdaf83679003e5f6cVirustotal results 43.66% 
2024-03-26n/aexe 919ccfa399f0b60f9b0680b0325b3415ab7ef4a357765c305756d56017b1ea9bn/a Cutwail
2024-03-26n/aexe 853f9d2924d01af6a58e86b1cda95a9f2201b6777382c83e6a4a896dd4ada69bn/a 
2024-03-25n/aexe f57aa83a8ad80d934ab1cb1aeee31018ff79bd4d7f62672346bbcc0e459a8b9cn/a 
2024-03-25n/aexe 271d519dff8d3a7db53b291c7345fdb05fc7a9d1e3862ea073287976a14fcb74n/aNetSupport
2024-03-24n/aexe e37d085fbc95fcdbc002bebc3f074320051781bc645b9ecda152cfa442792772n/a RedLineStealer
2024-03-23n/aexe e6b661ac1e91da56a3fceb31bca686c9a5ee2f1cd5b0e35bf239b0f78df53defn/a RedLineStealer
2024-03-22n/aexe 4e4780f9cdd56a1bca20444d8081b13cbabd85a083df5b824cf85a527235ff11n/a 
2024-03-22n/aexe ee54076e2deaecd9c41c9a502fd702e941efb13044f321bd0e3b90ea5fd17cd8n/a RedLineStealer
2024-03-20n/aexe 2e6a8480b089ad4675ab0ccad65ce53e3d4bcc31dd5a69b50f5e3f6bd80e5ae2n/a Cutwail
2024-03-20n/aexe 9231655a42f8c759f7e6bc29901017b15bfaa4388da6504679523620347f135dn/a LummaStealer
2024-03-18n/aexe af0af65ec7881bbc6dd5e6c972c134ddf501e1a2b0c88698233b12acdf5ead63n/a 
2024-03-18n/aexe 9ede60df2413791861f64add22036616f5c19d09d1cb4f39610e61492f15a344Virustotal results 43.28%LummaStealer
2024-03-18n/aexe df253ed037f4329a21b28dd068714a36fc129954257d509b53b82df414ee6e62n/a