URLhaus Database

You are currently viewing the URLhaus database entry for http://kale.amwebsolution.com/ldms/0a839761915d.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3222947
URL: http://kale.amwebsolution.com/ldms/0a839761915d.exe
URL Status:Offline
Host: kale.amwebsolution.com
Date added:2024-10-07 19:02:54 UTC
Last online:2024-10-14 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-07 19:03:13 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:7 days, 3 hours, 18 minutes Bad (down since 2024-10-14 22:22:02 UTC)
Tags:LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe c349382da710f1dd44bb9b6f0bdd3189d902781cc227635f34f645663462cdben/a LummaStealer
2024-10-08n/aexe 3afc97a2dc9182f212867655abf3e55e5c55f83cfba21dff22a46b5b836405e3n/a 
2024-10-08n/aexe e733f8b55db7c6c38ebcc532587f3aa23b97ffac29ce32e92b1dc443c96d46e8n/a 
2024-10-08n/aexe e626ebcdb8b1dae64b2b19b1d71be9c1137b50fd4a11dce857fc28e62556723fn/a 
2024-10-08n/aexe b3f051b0f0b94ee5b57603441ee0f3bf54950529e350f3015f216f5fccf1dacbn/a 
2024-10-08n/aexe b798c43dfa0fac3d5016fc6f0c4ef08b55e0b808e09ebc5491ba05b585c1aabfn/a LummaStealer
2024-10-08n/aexe 38bd9652cee2fda5797181b1dd031d5d1522fc374c19cb2689d16794171c313cn/a LummaStealer
2024-10-08n/aexe 909d85f43b12a5e4de510c605b0775cea7c39f63bac8e075587008d743747620n/a LummaStealer
2024-10-08n/aexe e1c963d149c32de346ca067dd79bce2443e3221d571f23a66744c7d96e7e4219n/a LummaStealer
2024-10-08n/aexe 4a69b0742f47207178fb84b6470429b536a3b6250c37a248cff1b68444d26e63Virustotal results 41.67%LummaStealer
2024-10-08n/aexe 8c6bfb5f891a601116f68c2ce1faa64459bd65afbb49060411db97fdeff6e84an/a LummaStealer
2024-10-07n/aexe f4a4aa3580cf00478388beb6ed61168e0a3d3ffcac8a29be943633eee1a7f0ecn/a LummaStealer