URLhaus Database

You are currently viewing the URLhaus database entry for http://kale.amwebsolution.com/ldms/9dd06d870941.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3221495
URL: http://kale.amwebsolution.com/ldms/9dd06d870941.exe
URL Status:Offline
Host: kale.amwebsolution.com
Date added:2024-10-07 18:43:10 UTC
Last online:2024-10-12 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-07 20:25:13 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:4 days, 23 hours, 23 minutes Bad (down since 2024-10-12 19:49:12 UTC)
Tags:LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe 743066ea0e49b30514250a6cf9a6b948448bfbcd33736f86a9ce5bfca5742dfen/a 
2024-10-08n/aexe 0395499033d792c7274898ef9d023142bf2f1b7095614c2b9f1852eb2cc97934n/a 
2024-10-08n/aexe 77d2dbd78954474edbd72082ffa8f588626978d069d96299c26877d58a6b4ad7n/a 
2024-10-08n/aexe 2c7e4233bf6b94bf8b04616a983f491a252134040927a4c56674cdd22f1f894bn/a 
2024-10-08n/aexe ae3a1d7a318cfa9e3041fd2b95f7e4ae2ea605c132eacb1d11429cec0d520fe5n/a 
2024-10-08n/aexe 3ffa65e3b8389ad5404f6e0592dbefdd1abbfc93da4225a77bc5f4ce471192fcVirustotal results 21.92% 
2024-10-08n/aexe 4720c19da4d5bd5fab47debe2a578912cf89121f79473b54c41bc761ae7ff04cn/a 
2024-10-08n/aexe 4ac4adc2a79ccde058c44394503f22683fa23b0da813e1241a2650e3036bd48cn/a LummaStealer
2024-10-08n/aexe f660ac58833c49dde529dd0a25ddb070b5b85c680c334ce216f4a1638e60b012n/a LummaStealer
2024-10-08n/aexe 652e3aa6257d354fc3f8093a65757557941ee488b6b7e4a3ac85662208f6d465n/a LummaStealer
2024-10-08n/aexe 149d37e3741ea4b536725e5f98dae7505038856f0aec1ebfc16c47e20cf274c6n/a LummaStealer
2024-10-07n/aexe 31e8cafc14871bc98ebdb7b8f54d77eecb736f6f8f0d3546b2a364eec885a77an/a LummaStealer
2024-10-07n/aexe 63ca62f5f0010838bf12974c4c8fe1586872dd461deadfa2f584e04422f943e2Virustotal results 43.06% LummaStealer