URLhaus Database

You are currently viewing the URLhaus database entry for http://males.mugutu.com/ldms/0a839761915d.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3211888
URL: http://males.mugutu.com/ldms/0a839761915d.exe
URL Status:Offline
Host: males.mugutu.com
Date added:2024-10-04 18:58:45 UTC
Last online:2024-10-09 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-04 18:59:09 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:4 days, 18 hours, 26 minutes Bad (down since 2024-10-09 13:25:31 UTC)
Tags:exe LummaStealer Stealc Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe c349382da710f1dd44bb9b6f0bdd3189d902781cc227635f34f645663462cdben/a LummaStealer
2024-10-09n/aexe c36512ece549f6c400b9562b84593baa0ff1a0216feb21e0983eb07f3b1a81e8n/a 
2024-10-09n/aexe 05df82ff0d22f9ec0d975d72571b1109eac2cab40a64a6d323dd2a5120a255d4n/a 
2024-10-08n/aexe e4a0fda53c5468a1e5e7763196defa990f60648d7a79c4b1c7dee5ab7a027f86n/a 
2024-10-08n/aexe b287217951ce2010c45565fe7ec1cf4b1b8ac3a8afbf89b047fd687e5ff1ebfan/a 
2024-10-08n/aexe e626ebcdb8b1dae64b2b19b1d71be9c1137b50fd4a11dce857fc28e62556723fn/a 
2024-10-08n/aexe 4f19035044546d7af836f8c833f3aee86ced7d1911d4d7abe4b442c132e4f2ben/a 
2024-10-08n/aexe a22158d2c322c640310d2c2fe436bd57d1bb99ee239c95b44989d64290c7dedcn/a 
2024-10-08n/aexe b798c43dfa0fac3d5016fc6f0c4ef08b55e0b808e09ebc5491ba05b585c1aabfn/a LummaStealer
2024-10-08n/aexe 030d94c733fe621c85edaa0d8aed658f229aafdec727794291e2146f31327684n/a LummaStealer
2024-10-08n/aexe 38bd9652cee2fda5797181b1dd031d5d1522fc374c19cb2689d16794171c313cn/a LummaStealer
2024-10-08n/aexe 723fad50e2b739cd44c93abb41a4975c30eec4db33495fed49a66c2bcdf45208n/a LummaStealer
2024-10-08n/aexe 8991eb4bcf8f32f2af17bbdd910474cf218a904a7347ea91d2d14623b0dfa332n/a LummaStealer
2024-10-07n/aexe 9ccaaf2b8f1de65a07227ea2188dcff98afcb84878110d561340fcee15c03e1cn/a LummaStealer
2024-10-07n/aexe a64751b555c1b6774c4e47e4956e622660a29ae6f6609acb50134b28299de428Virustotal results 40.85% LummaStealer
2024-10-07n/aexe f4a4aa3580cf00478388beb6ed61168e0a3d3ffcac8a29be943633eee1a7f0ecn/a LummaStealer
2024-10-07n/aexe 20e260e2c0b1fa7d96a4786bdfec8cdcb05a801f90f7c084fdabb32fef6f97a2n/a LummaStealer
2024-10-07n/aexe 990eb5b12bad3be444c26a70f1719154959f0b983b8d917a1a0ed163ce86b9cbn/a Stealc
2024-10-07n/aexe fe505e319febbf233e645f6abf6ef57fecc926c27a97ffc2b69104f39f782785n/a Stealc
2024-10-07n/aexe 7078052dfeed2647e9d7248e641da5f3fc70725f65afc3c9110b89eba29b54f8n/a Stealc
2024-10-07n/aexe dc832b04ad8e7a52b927cd9582cf9ee9a1a42d6578c04574e2450255c9143d5cn/a Stealc
2024-10-07n/aexe ebd03938689fe8c0d4848164df66ee3c242af6f68e2c37087442735b4f6e1fden/a Stealc
2024-10-07n/aexe 9c8711af757f45f047f2d47581330c77c4b78964128559c981935f31d7b40718n/a Stealc
2024-10-06n/aexe 055ca94d7c65f18f60f5cab870fae787cea38733c8d5f1e87f582fe174b52065n/a Stealc
2024-10-06n/aexe 7c8cd9b1bab6b097f23872a702cdf2e6c61b51b6e4ab8e8ce5b3eb1a1b90ec5dn/a Stealc
2024-10-06n/aexe bf95166cc7dcb5b2f0e4fc39d1fc7d3dd493757d560e224ec71d921bd88309e6n/a Stealc
2024-10-06n/aexe 765b1fc558801120df6d2b90b212d251ed116183c64a0590193c4f9506b8af39n/a Stealc
2024-10-06n/aexe 49974b62aecbde0d25f7166abef73861baa9bd047ef95856eefb4a3bb764c656n/a Stealc
2024-10-06n/aexe 1d0e39ca80a82ad0641b5316a1124c48c4c9f53dccf9f6fb71662902b11f1c9cn/a Stealc
2024-10-06n/aexe aeba247333ff16dd71b7664981b2716306236ed4a29eba443b26ba8ff493ae5cn/a Stealc
2024-10-06n/aexe d274e33c6c06b75d244e018a6bdc716b98a3faeb2d6d23798643038a23d213a1n/a Vidar
2024-10-06n/aexe 0380c466565febc9304291246621f3ab363cef19976bc3c711939faa3eff3decn/a Vidar
2024-10-06n/aexe b158277a7d128b7c11940efd7eb9130fb2156e8f29b387b03be8c8d5585a9f50n/a Vidar
2024-10-05n/aexe 07b4672c03910b7fd70b8e3653a2b4175cb65df16a8b238fcbb49f8362e24776Virustotal results 26.39% Vidar
2024-10-05n/aexe 809d47314bd2ef88f6e1014ad16872ed4c7319030c8ab497d3500497138a78f4n/a Vidar
2024-10-05n/aexe a402c05322e129770e031cfec175683cef54740f75b082f759aaea08e7b1f96en/a Vidar
2024-10-05n/aexe f8213e2239db5de42b3a8c6a0dd69594e3c2789b74811ff35df7e5ba2e1023a0n/a Vidar
2024-10-05n/aexe 52ed24e3100ecb8e7df7698947843df8bb8d927d887f489e765c1693827d8600n/a Vidar
2024-10-05n/aexe 9a3490c5327db85d7ddfb64e2d2fdeecc5402685c3c3899b2363a5e59e3ef3f4n/a Vidar
2024-10-05n/aexe 458ec87d86195f1a046ee708585802322eaaae262b07834790df6baaa80be7a7Virustotal results 22.86% Vidar
2024-10-05n/aexe 3caa41ecec4fcb358ceeba4b2406f4df6daa1c7ed4412f1839141d7b808a531bVirustotal results 45.83% Vidar
2024-10-05n/aexe 8f3748f78dc442219dbf9b7bfffa8ebfd072063de7968522720584aa2b03246bn/a Vidar
2024-10-05n/aexe 97ffd3a90044e85b5885d1170bd4bddfd2dc1d45bd527388e9d1c0a9da9668a1n/a Vidar
2024-10-05n/aexe c55792bef18d22c17e2a1ce14e2a3c69ac142152a68321b985dafb5aa17d8dc3n/a Vidar
2024-10-05n/aexe 5f5c00f107a8ed9d580ce2f2fc797af996b8afcb412690fa16a1bccf9884485cVirustotal results 41.67% Vidar
2024-10-04n/aexe caead375d40e773f1187af91b65c91fee9330ebe4afbedc6a38f802aa59d31b3Virustotal results 33.33% Vidar
2024-10-04n/aexe 3569fa6da24869845ee0e6da07d76998d7484ea688968047fed9c1aca8c47d33n/a Vidar