URLhaus Database

You are currently viewing the URLhaus database entry for http://nsdm.cumpar-auto-orice-tip.ro/ldms/04a4f32fae41.exe#d16 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3219962
URL: http://nsdm.cumpar-auto-orice-tip.ro/ldms/04a4f32fae41.exe#d16
URL Status:Offline
Host: nsdm.cumpar-auto-orice-tip.ro
Date added:2024-10-07 18:21:50 UTC
Last online:2024-10-09 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-07 18:22:10 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:1 day, 17 hours, 4 minutes Poor (down since 2024-10-09 11:26:10 UTC)
Tags:LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe 48c9e1cce6868ed1f46051b8898643c59545185e16600f15bd54ce86a74f766aVirustotal results 30.56% 
2024-10-09n/aexe 59052b00e8a9f39403f0a6721bb7f7cf6f642ac1bb1f3b33a5181bfbe1f811dcn/a 
2024-10-09n/aexe 541d9d89777c4fba7a39de9bc631515555e9f5e45ee126d1f1e6729f1b7b3b7cn/a 
2024-10-08n/aexe 59eb156c40a5708be145afd4ad609a76064a0f6ec5d883af64d133d3d7726566n/a 
2024-10-08n/aexe bbfe361a90489fa7a5e7bb26e8b258046fb54d27c3dc2e793fc940404588ff10n/a 
2024-10-08n/aexe 74b05fbc385685bb0f7e5d8420042aa661151be9e93c08383ef933f522ee8e58n/a 
2024-10-08n/aexe 2a74fd3605858ad3ee96bdcebe92cc7448045674130d7a35210d1474884bc2b2n/a 
2024-10-08n/aexe fedc791647e435252f93b5fd03af2c8f13569757b9263aef1c6e5a5052b7c848n/a LummaStealer
2024-10-08n/aexe d00168a2d50a232ff2c8bd62017be112e6342d3bb5b2b504590c8f58bc548d57Virustotal results 49.32% LummaStealer
2024-10-08n/aexe a15e56a6de648104ae86905a0c55915cb744ddb5854993c9734642fb8c256b03n/a LummaStealer
2024-10-08n/aexe 1529baa44cb500aa37c71ff885c8e6379a46cf1015f6ab33b93a914c7c42209fn/a LummaStealer
2024-10-08n/aexe 51aee71310463d33c32c784cf46225f7c754fbd73820b2d581cbfa347d068a72n/a LummaStealer
2024-10-08n/aexe 528165c02af47385f8b0016d580295bbd8dc1d71c6436d4d7be4648b2b9e36f0n/a LummaStealer
2024-10-07n/aexe c3353ac5641f21e195cc2018392c516fbe1d9886b4e3113d3e4b6ff1cea7758en/a LummaStealer
2024-10-07n/aexe 220eb25ffc7f72d9782b5d35be3e4d1e162518b62860667645f446ce84b25047n/a LummaStealer