URLhaus Database

You are currently viewing the URLhaus database entry for http://hans.uniformeslaamistad.com/ldms/0a839761915d.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3211572
URL: http://hans.uniformeslaamistad.com/ldms/0a839761915d.exe
URL Status:Offline
Host: hans.uniformeslaamistad.com
Date added:2024-10-04 18:52:41 UTC
Last online:2024-10-14 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-04 18:53:08 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:10 days, 3 hours, 5 minutes Bad (down since 2024-10-14 21:58:19 UTC)
Tags:exe LummaStealer Stealc Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe c349382da710f1dd44bb9b6f0bdd3189d902781cc227635f34f645663462cdben/a LummaStealer
2024-10-09n/aexe 9a5c70a5cff6982febcd92eb9c6f6fae8d1978a2cc2ef0dce7458546f8390a63n/a 
2024-10-09n/aexe 29431b53aa58316ecf7482ae8817a9d47fba7437e100e079e2cb705114773bcdn/a 
2024-10-08n/aexe e4a0fda53c5468a1e5e7763196defa990f60648d7a79c4b1c7dee5ab7a027f86n/a 
2024-10-08n/aexe 039562c8fc4bed39a15971aa426e2cb52492d9d81e34a14a779d96f3814a5dc2n/a 
2024-10-08n/aexe 5458d8d826214be4f3e4937e884007f24ac85118d7bfebba2eb2cb6d01d12999n/a 
2024-10-08n/aexe 809ce68996040e0f07d6e67ba013c849926cec165034b6e669299cbab57778dfn/a 
2024-10-08n/aexe 297ce36406483498ee42d77ed04450bda8b6c03f74a59225cea106281bbc1860n/a 
2024-10-08n/aexe a22158d2c322c640310d2c2fe436bd57d1bb99ee239c95b44989d64290c7dedcn/a 
2024-10-08n/aexe ad14dcc1c5205117ef5211b8620c14a6cd70b29ea147779537cd408ef1b9425fn/a LummaStealer
2024-10-08n/aexe 030d94c733fe621c85edaa0d8aed658f229aafdec727794291e2146f31327684Virustotal results 49.23% LummaStealer
2024-10-08n/aexe 0be4dffaff0374cef8e41f04ec79488c7e415ca57c38852b26812453ee3cb406n/a LummaStealer
2024-10-08n/aexe 42eef1aea01cd52ce83a59af77fe70f71fbc548698dca4d2af03a0b32bf3f015n/a LummaStealer
2024-10-08n/aexe 6ca712075b8b085fb2b95aec517b4f353ea78fafa502529b0d7d6d7a9a4c50a9Virustotal results 42.86% LummaStealer
2024-10-08n/aexe 8c6bfb5f891a601116f68c2ce1faa64459bd65afbb49060411db97fdeff6e84an/a LummaStealer
2024-10-07n/aexe 871de398ab9f199d5598614eb6701caa8b39d36fd004c2b71136ec23d3fe511dn/aLummaStealer
2024-10-07n/aexe efaeb7378a1d05def969e746f435a8955aa9ddad32f052f5f3f4d8d202bc679cn/a LummaStealer
2024-10-07n/aexe 44da124d9e8f7fe38150f260a0f46a9beb01c6afe761cea957b7943e6928362fn/a Stealc
2024-10-07n/aexe 76ed2d120a41f3e76dbb765661f8e592693582a46888a6e77e0aac7d0c9df580n/a Stealc
2024-10-07n/aexe 8181b4edc62c0247d84cff12784c1088d1ff4d9d3044d5296f5f1f7af53f3b9en/a Stealc
2024-10-07n/aexe 3108042ac2863ca5e76724efdb51129ea054adba550d11c248a3b7d2dd4dafc8n/a Stealc
2024-10-07n/aexe be7f699912cb69272a0948d3dd4828a632128a9907dbe7bc995e72f981e87aa2n/a Stealc
2024-10-07n/aexe ebd03938689fe8c0d4848164df66ee3c242af6f68e2c37087442735b4f6e1fden/a Stealc
2024-10-07n/aexe 9c8711af757f45f047f2d47581330c77c4b78964128559c981935f31d7b40718n/a Stealc
2024-10-06n/aexe 07050d2e07da173a2accba77d575a54f26cafa3d29f9f34a27725998d9f6560dn/a Stealc
2024-10-06n/aexe f80782bd0d0a88af97667eb9b1d291fd4f247adc57f23b244cf1d78a756ae81an/a Stealc
2024-10-06n/aexe c0b341ce0a80a04314a4e37aaf5c7146c57ef12af950a0b88083ec99d8d7a5f3n/a Stealc
2024-10-06n/aexe 4d2c154e42553c9d6c50df69938d53110bf946ebe4d6710342696e5cad22a3d0n/a Stealc
2024-10-06n/aexe 6d8062365eb28e9204d59cfec570d0614c41e6ec29126510a6af69f28a9d715fn/a Vidar
2024-10-06n/aexe 83320056155c69451c0309db035a8727dca747a8346dd9285a4810d8d68e5a45n/a Vidar
2024-10-06n/aexe 0380c466565febc9304291246621f3ab363cef19976bc3c711939faa3eff3decn/a Vidar
2024-10-06n/aexe b1e274fed3b065dbbaab540f4e06c594115d9932376234297249738f2073a329n/a Vidar
2024-10-06n/aexe 149262c531588f84f0b35e1029e02033eef1cb6c9a1973cf554fe97866d81abdn/a Vidar
2024-10-06n/aexe fe93e0863fe12ea16a9da8a269171d1684713e2fa3582b32628ea016ea4b7f64n/a Vidar
2024-10-05n/aexe af194b518246e1f0d6b79cdc3f98baf10c30d65330b5d12f15eda2419fe793b0n/a Vidar
2024-10-05n/aexe 9496249b3b2446b2ea8619e7695829ec10991949b0c2b9acebbe3df9388971e2n/a Vidar
2024-10-05n/aexe f8709d2b6b49d979ae17955838107d872b26381d2e677e99931ee557b78dae92n/a Vidar
2024-10-05n/aexe b76718e0c79369e99567fe045a6500c3c92bba604fdc4fd1341b698115ab892cn/a Vidar
2024-10-05n/aexe 577664249876b9c827de662e8cabb7a0bdf4e283003dff55b405f59968ecc6f5n/a Vidar
2024-10-05n/aexe 3caa41ecec4fcb358ceeba4b2406f4df6daa1c7ed4412f1839141d7b808a531bVirustotal results 45.83% Vidar
2024-10-05n/aexe 54a4073acb88784f90a594c5eb27124fc9119809ea1b3c7c499c17eb6d976b81n/a Vidar
2024-10-05n/aexe 4f8ef8f8edc8de923f688b5cd2d709a0c0c45e34d3e171c6aab048cd7d6df8ffn/a Vidar
2024-10-05n/aexe 233eac36fc086f139683a35d64490edc7054953626a89cffbc7a0d8cacf3b2c7Virustotal results 45.83% Vidar
2024-10-05n/aexe 5f5c00f107a8ed9d580ce2f2fc797af996b8afcb412690fa16a1bccf9884485cVirustotal results 41.67% Vidar
2024-10-04n/aexe c50557aac6c2187d2526529006712e3a8dedf60edae28a8f848495c81da305aen/a Vidar
2024-10-04n/aexe dc838ab67698dbcb3361c79e187b58ef0c0353c2b083e7fd5163f6d37866c32cn/a Vidar