URLhaus Database

You are currently viewing the URLhaus database entry for http://proxy.amazonscouts.com/ldms/04a4f32fae41.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3223503
URL: http://proxy.amazonscouts.com/ldms/04a4f32fae41.exe
URL Status:Offline
Host: proxy.amazonscouts.com
Date added:2024-10-07 19:12:17 UTC
Last online:2024-10-12 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-07 19:14:10 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:5 days, 0 hours, 36 minutes Bad (down since 2024-10-12 19:50:29 UTC)
Tags:LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-11n/aexe 109ed1c4c787af1e0fe9d549c951755b8e02f2b862e576e4a8ebdab587d6523en/a 
2024-10-09n/aexe 48c9e1cce6868ed1f46051b8898643c59545185e16600f15bd54ce86a74f766aVirustotal results 30.56% 
2024-10-09n/aexe 541d9d89777c4fba7a39de9bc631515555e9f5e45ee126d1f1e6729f1b7b3b7cn/a 
2024-10-09n/aexe e3cead8afcee966cf37c52a1e22d8d51e970c612601d281b7ecb70b28f88dd53n/a 
2024-10-08n/aexe a6cab4318804f1602dd1fd89cf462db470a88be3f423bcbb574adf232d82e643n/a 
2024-10-08n/aexe 98d4890cd3aa124b9e0e38b56271f58f32bff1cdc98e6f767279cba5583f6912n/a 
2024-10-08n/aexe bbfe361a90489fa7a5e7bb26e8b258046fb54d27c3dc2e793fc940404588ff10n/a 
2024-10-08n/aexe 74b05fbc385685bb0f7e5d8420042aa661151be9e93c08383ef933f522ee8e58n/a 
2024-10-08n/aexe 9e7d22a7d2f77fdf350e2ea124836648046f4cc2de5c41562577dc91c34c7b49n/a 
2024-10-08n/aexe fedc791647e435252f93b5fd03af2c8f13569757b9263aef1c6e5a5052b7c848n/a LummaStealer
2024-10-08n/aexe 80787d7015674da7cefda7059da6116a42b3382aa8741580736beeb76242886cn/a LummaStealer
2024-10-08n/aexe 0d2d7b67867e49a293adc42e9fbd0bf60313a0583e3f258ca6b21fa86109f434Virustotal results 50.00% LummaStealer
2024-10-08n/aexe 51aee71310463d33c32c784cf46225f7c754fbd73820b2d581cbfa347d068a72n/a LummaStealer
2024-10-08n/aexe 528165c02af47385f8b0016d580295bbd8dc1d71c6436d4d7be4648b2b9e36f0n/a LummaStealer
2024-10-07n/aexe be118a2f474e6c797f2adf7ef65ab3b1c686d9b69f23aa75a51ab76ac8df098cn/a LummaStealer
2024-10-07n/aexe c3353ac5641f21e195cc2018392c516fbe1d9886b4e3113d3e4b6ff1cea7758en/a LummaStealer