URLhaus Database

You are currently viewing the URLhaus database entry for http://nsdm.cumpar-auto-orice-tip.ro/ldms/956d73b7f041.exe#default15st which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3219205
URL: http://nsdm.cumpar-auto-orice-tip.ro/ldms/956d73b7f041.exe#default15st
URL Status:Offline
Host: nsdm.cumpar-auto-orice-tip.ro
Date added:2024-10-07 15:22:04 UTC
Last online:2024-10-09 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-10-07 15:23:08 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:1 day, 23 hours, 11 minutes Poor (down since 2024-10-09 14:35:07 UTC)
Tags:dropped-by-PrivateLoader LummaStealer Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe 50ceb67e5a65b823aae5f46619a22c70ee8bd3a9629cae0f2057dc910a833d06Virustotal results 30.56% 
2024-10-08n/aexe 37d8d0bd2f4a619e4f443d6128e6eb585eebc6f0762140d500311b425f443b4cn/a 
2024-10-08n/aexe 1f57b16b6baa6dc09dac25b7bb4e0fb2f12e361fef5ff9d6787a95bf169bae26n/a 
2024-10-08n/aexe 84224693aefed24c4d65dc1f7161556fae1706137eb2acdcc28a530861f5196an/a 
2024-10-08n/aexe 2b031c700c747233c5248cadc3cd48e4ccb7f81935d97277c08c6e9321c995abn/a 
2024-10-08n/aexe e8daa13e48c662f7f40e5d45a2b7afaa7d3066f0e31215c155ed434c50b16ae8n/a 
2024-10-08n/aexe 77a9f2678d92a6f81e31676dcdc2f8d4953627457f4529391e6bcd7b8e6b7c65n/a 
2024-10-08n/aexe 9a2f3668264ee10c6696cf459693e955e91efab24be87bcfbe63ff2c092a93f0n/a LummaStealer
2024-10-08n/aexe a3244a255977d3380c9ff8b285c222e9a29aede0a6c39515bfdaf0231af62bb2n/a LummaStealer
2024-10-08n/aexe 26a3d2e19923fa4d7020d42680f3d96715ba62d6102731fd646c0889a818f316n/a LummaStealer
2024-10-07n/aexe 91b47658a9671c508493339a0cd8c5bef29fde95e1ec8b89bdcda57679cfbae3Virustotal results 41.67% LummaStealer
2024-10-07n/aexe 57e369bd535e128f9290073985cd2a26b267e81f4c26621b0266402f07018595n/a LummaStealer
2024-10-07n/aexe 9e97f0139c2d9200e07f918a140e0d6952deff70ec218fe861ef0ba73d4f786fn/a LummaStealer
2024-10-07n/aexe 5501120627d6aa86b043d6ca51b3bb2dffeb44a8c0cf6f153d6fdf550d76690fVirustotal results 41.67%Stealc
2024-10-07n/aexe ff5e995f1c2441adff9759b8ee589e90744758fdc40f1b8eccf02562eb708cb1n/aStealc