URLhaus Database

You are currently viewing the URLhaus database entry for https://finalsteptogo.com/uploads/tera10.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3191095
URL: https://finalsteptogo.com/uploads/tera10.zip
URL Status:Offline
Host: finalsteptogo.com
Date added:2024-09-25 13:25:17 UTC
Last online:2024-10-01 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2024-09-25 13:26:08 UTC to abuse{at}bee-hosted[dot]net)
Takedown time:5 days, 21 hours, 25 minutes Bad (down since 2024-10-01 10:52:00 UTC)
Tags:exe LummaStealer opendir zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-09-29n/azip 9cba5b6f7d066f9db44e68b5ecbd4706c2b1fdf7248d8b1fc7bf3ce97028a8aan/a 
2024-09-29n/azip c976f6ca0380cf14341e76074378897fea6a2735bbcc8d7c61de97696ac4aeb4n/a 
2024-09-27n/azip 6717309a51e5fc8e74403237a0dab665e004d57dc98a70ae2034fc82aecacd1en/a 
2024-09-26n/azip f4f1c01264eb138c80a8deab4463951acf3222fcaa2141e6b0cc12405191a219Virustotal results 13.43% 
2024-09-25n/azip df8e67b33e9d8bb23dde0d2e0acf196592184de3339153630edd6bf148170cd9n/a 
2024-09-25n/azip 2b44338b854995d29f8a6f0f35331deb71251b1eb30104ff593952b27b827aa8n/aLummaStealer