URLhaus Database

You are currently viewing the URLhaus database entry for http://sdshsjakdjsaljdkasda.ru/images/logo.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2810061
URL: http://sdshsjakdjsaljdkasda.ru/images/logo.jpg
URL Status:Offline
Host: sdshsjakdjsaljdkasda.ru
Date added:2024-04-12 10:01:10 UTC
Last online:2024-04-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2024-04-17 21:02:08 UTC to abuse{at}mgnhost[dot]ru)
Takedown time:5 days, 20 hours, 4 minutes Bad (down since 2024-04-18 06:06:52 UTC)
Tags:dropped-by-SmokeLoader LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-15n/aexe 9e86e4796a51e2cae9487ec086aa2159b65a037808e70a0e7dbaf5a946a8801en/a LummaStealer
2024-04-14n/aexe 355700ddc826490f69a33d2a9da565b73704805e62ae35bfae359888cfb8853fVirustotal results 44.29% 
2024-04-13n/aexe 5622abc320651b75c0e7f5eb5be1b1de396f04344a258d490ab0c24e5d3969e4n/a LummaStealer
2024-04-12n/aexe 4dce4b8e82d08c5714447cbad8fe62c4576f2362715bfeb4876c0bd07f90f239Virustotal results 42.86%LummaStealer