URLhaus Database

You are currently viewing the URLhaus database entry for http://hans.uniformeslaamistad.com/ldms/fedf8679e8d2.exe#d12 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3208964
URL: http://hans.uniformeslaamistad.com/ldms/fedf8679e8d2.exe#d12
URL Status:Offline
Host: hans.uniformeslaamistad.com
Date added:2024-10-04 02:21:05 UTC
Last online:2024-10-12 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-10-04 02:22:10 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:8 days, 17 hours, 30 minutes Bad (down since 2024-10-12 19:52:11 UTC)
Tags:dropped-by-PrivateLoader LummaStealer Stealc Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe 6b032a89988a3de8005371562c8d89e1e951171eb84e40eaecf718a5a1b944f9n/a 
2024-10-09n/aexe 6eb56ec3e467bf7d4622cd2baf3edacdecb6f57817a3a9a84214f4014764d37en/a 
2024-10-08n/aexe 6a0ed2a5558cd870afc5adfd0952e498972cb2c10bac7be1b433a7e7e3995311n/a 
2024-10-08n/aexe b894b89e33f3b19f09f04f751d433520791547b4e705b887d0668044074b6b74n/a 
2024-10-08n/aexe f6ca3e7b153a74e012537f1fe60abc97e3680d373699c16ebd18677c1e65570dn/a 
2024-10-08n/aexe 0f11570606f34e84a52113973ba85bb488eca4ef346a0a8aef55002220b09b93n/a 
2024-10-08n/aexe 9089304e251cbfbdbc65f7cd85776d98a8e776477bdd6ea94b8bec29642c8eddn/a 
2024-10-08n/aexe 21722552bf3df1eb25d109053c2c7af03cb7029fd3596bfdf76e9fe5f49273c5n/a LummaStealer
2024-10-08n/aexe 9ac8e5087032a4ff9eebe07dfc44668db4acf4822ff6257e3c8cab0d5e656af2n/a LummaStealer
2024-10-08n/aexe 6bfda743b076088e3e64fa41604790dc492ae06b68968f108cfbb823f3be074an/a LummaStealer
2024-10-08n/aexe 843530ab613b2fd9b5f8af617a5e115d293d4456b1f0cc637141b5a53bee6f14n/a LummaStealer
2024-10-08n/aexe c1825014c69aa430f2c108e0ab1ed9e13225230e0ab52a435dd578991a901a5bn/a LummaStealer
2024-10-07n/aexe bf71fed04dabfe3a63494cb3e6a1835d1963944c6ca013171e2d584dfc5cec16n/a LummaStealer
2024-10-07n/aexe cb520c16ef8b5cfc4bd9c136d089d1414e4d7f1ed3ff4fa14fc11446640bc667n/a LummaStealer
2024-10-07n/aexe 428443b4eec33a6f84f7f0968f4d2f67cdf0fb4981fd520edc6759620cff20deVirustotal results 43.06% LummaStealer
2024-10-07n/aexe 405534ff0ffe506c7411e3f37e75e85b25604ab5c935eb51abee8d337aa4cc97n/a LummaStealer
2024-10-07n/aexe 270841fc2e97c0d1f8082ec2a426bfed2f431f65e1aecc8084cd7c14dbe86c94n/a Stealc
2024-10-07n/aexe ef5b302003cdf40534cd6c35dcd5f19556bcae1b421eb02989611e84cd557e63n/a Stealc
2024-10-07n/aexe aea684ef52aee40014503e626da6d304d995ff7b406683f3fdb75c6eb326fa1an/a Stealc
2024-10-07n/aexe 53affaac3fc469c218806bb1e470ea870ec845452deb265a17d233b512dd2268n/a Stealc
2024-10-07n/aexe 103e3e0fdd828c1aaaadf178b599d3d17c11689f62f5f89b50647a8e5a2b7c09n/aStealc
2024-10-07n/aexe d725c6906b41df9e6c5b10e6bdaf6d57e663a9993c0c963d3959af168e4cd99cn/a Stealc
2024-10-07n/aexe e20fce6f6fc16e3a19ae64daaff77efd2416b9bc87a6585ec6ee3b3e28884c47n/a Stealc
2024-10-06n/aexe fb807553f39c171e13c903c2b576f72c1c9f963c89697e84444db3eb5efdd67dn/a Stealc
2024-10-06n/aexe 841d4bd860f02466bf33892626ff3569264a5d0aac7a95fe657e9655705c2175n/a Stealc
2024-10-06n/aexe c5fd659987337ee0b1cae4a2815c41d20c4f5d3d1a989661971f18900d5810b9n/a Stealc
2024-10-06n/aexe 5e7a7b4405aeab39ff7bd06fd637cfac0848a4c9b680dd8a6348191632b328c6n/a Stealc
2024-10-06n/aexe f003b002962fe0dc926a3bd5855a50e14ff47407650916ee667371b7bdc619e9n/a Stealc
2024-10-06n/aexe b56544148f278cdcd4e031b0f7dea6535b5362ba32d6ba8e3ce65682271a73dbn/a Stealc
2024-10-06n/aexe 61ff25410f4adcd61daf7a3d55788408629637602d163f489d066c655cbb9561n/a Stealc
2024-10-06n/aexe 088ff2c04f2f32418ed7559db938cac9b9cb62bda7e91ce9758331f0c0c246fan/a Vidar
2024-10-06n/aexe 0717e83cc89344ee240e0bd6fc56ed56976f3fa7111fa6e205d2bb9c29e06303n/a Vidar
2024-10-06n/aexe 58d3289ccd09e51bc36cafb4cfa4b4e5f600f36233528ea26aee2695aab3f457Virustotal results 29.03% Vidar
2024-10-06n/aexe 6c377f1961cbf41458c8e24f3f5ad4b444eb840fb914efe0689fb4e81de66657n/a Vidar
2024-10-06n/aexe 3b7a6d1aaae77752da24e8d8dd69bbec640c5645c020d02f0e5464b758a8c7e2n/a Vidar
2024-10-05n/aexe e2b847cc5b626b60a859ebcfead9cd9bba40d4330cd280438eb3e67dfe62a88cn/a Vidar
2024-10-05n/aexe 6aef38b6985d22dcfe26b3fd640f33038eabc3b5e44f9a2483056eb60d8c558fn/a Vidar
2024-10-05n/aexe bd06eec8aa70fa2a8bdc24689f7dd67f710f52345f95b8957ca496ef18e0e056n/a Vidar
2024-10-05n/aexe 63c99c6bbf10b1ab61ba396b90f6194ab34d9234ef4dca69b9492f6fb81b206an/a Vidar
2024-10-05n/aexe 2898db5cc8b9ec46bbfce41ab946148b5a6fe8730fa9f9de1c5ea44d8a1ad920n/a Vidar
2024-10-05n/aexe 7b54818a72defee8f25baac9593a6e643f4ad82d8df01a155ae226a2a8b12b5an/a Vidar
2024-10-05n/aexe 6942ab9fdca852ba4e75984da81395aa5302050ff3e67698ccf6e680639b0f81n/a Vidar
2024-10-05n/aexe 2e3e4d9b39bdb44bd03e07fef67c680441f8f69b1b5e123ee566fb149c808a94n/a Vidar
2024-10-05n/aexe 444dbf3de7f166f12b794d12811fb0361786a0d51b11ec50da55873a47c388a5n/a Vidar
2024-10-05n/aexe e8e608c7418ce742c97c29b75b09d4498752c6f124b5d9ac4931c67923069e6an/a Vidar
2024-10-04n/aexe 1534b6d335d584c60a10f6f4e370bdb7ad81f983e2c5e4a1b0119d744a6a3d9an/a Vidar
2024-10-04n/aexe 8215ec2bb3e3af5576b5cf3edfab9a7817c20f056144d5717ad305d18131c7een/a Vidar
2024-10-04n/aexe 660f2d78ece320f5f2fb3abd4882f259b0dcff63d75366dba1f74a0aa99fff4fn/a Vidar
2024-10-04n/aexe aac22e651bd1502053d1a2dcfecc51afb5bc4e23ce16b576f9af8fa04004c1e6n/a Vidar
2024-10-04n/aexe 7d92d476a8266aebcc60a5d0515ef2833b3a2399a829f58bac0d823d08ef7404n/a Vidar
2024-10-04n/aexe 64dae347d9fd43c6051858cfdf7ac720fac46461bba66e889ffc5057b635ec3fn/a Vidar
2024-10-04n/aexe d4dcc6f2df3b078bfa61c1abf82957e9b6376921e1706d9c99630287b4d09d11n/a Vidar
2024-10-04n/aexe 1eb83cb4f56f6fff39097dc5bcf4501dbba84ca3667e483e3c8c057cb5c81c7dn/a 
2024-10-04n/aexe 00ebef65670bddb24e607e48acdeabac53e54db1199b486289908bef017688e9n/a 
2024-10-04n/aexe 5d550e2f6485a90cc4a058120281e7735c83955ae27ff390dd753107ef6a3641n/a 
2024-10-04n/aexe 215d0fbe55c52204d617fe962562d835ec54b6d4177e88db7bf17e4d5f0c8d7bn/aVidar