URLhaus Database

You are currently viewing the URLhaus database entry for http://sdshsjakdjsaljdkasda.ru/images/logo2.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2811803
URL: http://sdshsjakdjsaljdkasda.ru/images/logo2.jpg
URL Status:Offline
Host: sdshsjakdjsaljdkasda.ru
Date added:2024-04-14 10:01:11 UTC
Last online:2024-04-18 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2024-04-17 21:21:05 UTC to abuse{at}mgnhost[dot]ru)
Takedown time:3 days, 20 hours, 37 minutes Bad (down since 2024-04-18 06:39:46 UTC)
Tags:cutwail link dropped-by-SmokeLoader LummaStealer PureLogStealer zgRAT

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-18n/aexe acab94050ce3e61fb227467c5b3c1cf22bc2956fa81399f68876bc4236458d4fn/aLummaStealer
2024-04-17n/aexe 50ccd3682708ff0e7a6bfe46730937d469ca29e0ae405f3607b70fb15ad2e5c0n/azgRAT
2024-04-16n/aexe 7ad4324ea241782ea859af12094f89f9a182236542627e95b6416c8fb9757c59n/a Cutwail
2024-04-14n/aexe fd643dfa49e7411994295979b06bf68659ddb28f1942fe80f6149696d4aa0d2aVirustotal results 17.14%PureLogStealer
2024-04-14n/aexe 7bcb27502a111c7fb8d38e8a2f042dd56b7cf882d6701cf0b41da7b400bef269n/a