URLhaus Database

You are currently viewing the URLhaus database entry for http://nsdm.cumpar-auto-orice-tip.ro/ldms/956d73b7f041.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3219836
URL: http://nsdm.cumpar-auto-orice-tip.ro/ldms/956d73b7f041.exe
URL Status:Offline
Host: nsdm.cumpar-auto-orice-tip.ro
Date added:2024-10-07 18:18:53 UTC
Last online:2024-10-09 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-07 18:19:14 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:1 day, 15 hours, 14 minutes Poor (down since 2024-10-09 09:33:21 UTC)
Tags:LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe 50ceb67e5a65b823aae5f46619a22c70ee8bd3a9629cae0f2057dc910a833d06Virustotal results 30.56% 
2024-10-09n/aexe 0c9bd35dacf89f8fddea89fb89d6019bca37b308365a78234fd56a57260e87d6n/a 
2024-10-09n/aexe 8a22e83e8d1f7ae2f3bc0b098e7095a96ca156db31288e923f49efa4204ee1efn/a 
2024-10-08n/aexe a637631ff3c35fe14ee3dc0c60671d6dc193dfe58366deef59a8ae2aff5861fdn/a 
2024-10-08n/aexe 7eed9d234518572764708ace2bbb00a35832ac5ea8c787b5c3a5840c2e2d70a2n/a 
2024-10-08n/aexe e9775dd0baddb14b93f59a0c03db28bf930519e91120ba44d3317ef817cb3220n/a LummaStealer
2024-10-08n/aexe 9a2f3668264ee10c6696cf459693e955e91efab24be87bcfbe63ff2c092a93f0n/a LummaStealer
2024-10-08n/aexe a3244a255977d3380c9ff8b285c222e9a29aede0a6c39515bfdaf0231af62bb2n/a LummaStealer
2024-10-08n/aexe 2b43d94e4d391723efff6a967a29d43fc27a7eb68c5eb9a3395b0f21ac3168b7n/a LummaStealer
2024-10-08n/aexe a0161abed6fb600a59bbce3b354b66d275f006b3212dc3c9ac3a8e73cde15cf9Virustotal results 44.44% LummaStealer
2024-10-08n/aexe 32aaa78c8c36cfe53c801d2ea1ddd65009d4d6957f7d649b3bd4aadceafb395bn/a LummaStealer
2024-10-07n/aexe e2014caec0e1e6c10488b54f38dcd3475449429d5770c8dc8e3b1a4a600a7a7cn/a LummaStealer
2024-10-07n/aexe 77ffd280eed95cfd85aa72a5d0f140ee9c86e28fe805f0be47aef8c0bd7c32a6n/a LummaStealer