URLhaus Database

You are currently viewing the URLhaus database entry for http://proxy.amazonscouts.com/ldms/f2e7fcb20146.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3223818
URL: http://proxy.amazonscouts.com/ldms/f2e7fcb20146.exe
URL Status:Offline
Host: proxy.amazonscouts.com
Date added:2024-10-07 19:17:14 UTC
Last online:2024-10-14 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-07 19:18:10 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:7 days, 1 hours, 3 minutes Bad (down since 2024-10-14 20:22:09 UTC)
Tags:LummaStealer Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe ddf3c590d0cd0bf3f871c5baa3a84e14428cecf3a929fd2c40d483e3252d45ffn/aStealc
2024-10-09n/aexe 94faf0fda7f13b0d57cf2c5df7d2c815e7f08ab4864ddc5ad1bf026f99733b3cn/a 
2024-10-09n/aexe a5d3f4eb5f1b7c5b6158de4cf0890711018581e4b914a0644af76e2abcdf749en/a 
2024-10-08n/aexe 3420e92e3cba09c0e22f0d50641a4a20d1b4542da6a7706496ab5e380db7dfe8n/a 
2024-10-08n/aexe 74a62ecaa883cc9a10021ef4fc7129b9f8d6b1d400a2d245e2295cfebf87f93bn/a 
2024-10-08n/aexe 59e46c48659184ef6d565efd96ac1941d524eee0cb4948d444fdef165a4c8b1bn/a 
2024-10-08n/aexe facaf1f261301003eda621ce35f70a8a3ec229a5927c96823122ca5061100633n/a 
2024-10-08n/aexe cab53c4316ca6ede27980c0a24eb37ab763e737c66e1dcc4404795db5a55a428n/a 
2024-10-08n/aexe 889baf05ac65ac43001c29854019a6583474d2a020ee340440eab42c2ac201a7n/a LummaStealer
2024-10-08n/aexe 113ad884fd67dda3a7bdc728146bb9229e1ce290e3edf03f2e2ed82f4d5e950cn/a LummaStealer
2024-10-08n/aexe 471e1e7b3883f120e9170b0ccacd50c6d9dfe0b4bbcd42573f209ec245e2edc2Virustotal results 50.75% LummaStealer
2024-10-08n/aexe 0cfea23100355dbb358f9355abe9acc2c93042e29027c9f547fab0c0084d6d63Virustotal results 43.66%Stealc
2024-10-07n/aexe 08c820a89d527454157dc1d5921e66679f6c99cccf86b2ddb9af45c56636bbc0n/a LummaStealer
2024-10-07n/aexe 865f7d5debef700e7c9c3f0ef5b8f419d45b20af8610a9db5b1a98cca57b85cen/a LummaStealer