URLhaus Database

You are currently viewing the URLhaus database entry for http://nsdm.cumpar-auto-orice-tip.ro/ldms/f2e7fcb20146.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3219665
URL: http://nsdm.cumpar-auto-orice-tip.ro/ldms/f2e7fcb20146.exe
URL Status:Offline
Host: nsdm.cumpar-auto-orice-tip.ro
Date added:2024-10-07 18:15:53 UTC
Last online:2024-10-09 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-07 18:16:13 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:1 day, 20 hours, 0 minutes Poor (down since 2024-10-09 14:16:22 UTC)
Tags:LummaStealer Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe ddf3c590d0cd0bf3f871c5baa3a84e14428cecf3a929fd2c40d483e3252d45ffn/aStealc
2024-10-09n/aexe 3d0be4202906637bd2553570165b8ae414049e3920b217115b11a08c4ae3181an/a 
2024-10-08n/aexe f2be8662b520d214216060fabb9924d611374a312545b50980fc607666037d29n/a 
2024-10-08n/aexe b528714d2c27568734a5e5e6008e08aace663453a2859cef4b77c838e992e7fdn/a 
2024-10-08n/aexe fb072f72a01c301059a14d131926fd8715b53cb267e8d38851f447bbf8af4059n/a 
2024-10-08n/aexe ca0692c13dae53703daa3d9e9c2e5432823c9429d4a0ca7207ee2bda6b08d79fVirustotal results 24.66% 
2024-10-08n/aexe d60d8cab74e60fa72f33da91fee40bc2d335540651bbb689ba65752e97e6be93n/a 
2024-10-08n/aexe b387b9e0ac7d941eebd0dd0c2d529aa987612b522ae79d23de989d0180b960ean/a LummaStealer
2024-10-08n/aexe f721c42b15a8ca45724567536c76531f6fab4086b0e9b587b9c630eeda81df5bn/a LummaStealer
2024-10-08n/aexe 0d0973c018dcd19f8636feb053b4fdb94efd4021ecc16d1461ce60dfaf617cf9n/a LummaStealer
2024-10-07n/aexe 6937f18bfcc53400c0770b258f8850ab7903ad77742e8b965e50442c492974cfn/a LummaStealer
2024-10-07n/aexe db9af3bdd8ebd418602623c590a79be750fb2089c26130f1a8a73b56c754f030n/a LummaStealer
2024-10-07n/aexe f45d355c1594350d8619dfccb3ba2c035c23b1f5e443bb6df18523d1517781b0n/a LummaStealer