URLhaus Database

You are currently viewing the URLhaus database entry for https://nsdm.cumpar-auto-orice-tip.ro/ldms/0a839761915d.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3223986
URL: https://nsdm.cumpar-auto-orice-tip.ro/ldms/0a839761915d.exe
URL Status:Offline
Host: nsdm.cumpar-auto-orice-tip.ro
Date added:2024-10-07 20:35:07 UTC
Last online:2024-10-09 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-10-07 20:36:10 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:1 day, 16 hours, 24 minutes Poor (down since 2024-10-09 13:00:56 UTC)
Tags:32 exe LummaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-09n/aexe c349382da710f1dd44bb9b6f0bdd3189d902781cc227635f34f645663462cdben/a LummaStealer
2024-10-09n/aexe 29431b53aa58316ecf7482ae8817a9d47fba7437e100e079e2cb705114773bcdn/a 
2024-10-09n/aexe 6bdd179cd4b9c751a2c7740b987681e9158ff3f0e9584fc77f2458ab5f825a6en/a 
2024-10-08n/aexe 5458d8d826214be4f3e4937e884007f24ac85118d7bfebba2eb2cb6d01d12999n/a 
2024-10-08n/aexe 809ce68996040e0f07d6e67ba013c849926cec165034b6e669299cbab57778dfn/a 
2024-10-08n/aexe 4f19035044546d7af836f8c833f3aee86ced7d1911d4d7abe4b442c132e4f2ben/a 
2024-10-08n/aexe b85b85d9cdffdbc60d1e09a235c6c3fe4b29f7579c90741c5035d73b59cd2363n/a 
2024-10-08n/aexe 0518125e7fc5b2653c50f93f659025cbfad7fbf36fb8c833546652f4f5c9e35cn/a 
2024-10-08n/aexe 41d8eee8903a487fb610c5ceafd16fe945fbdc0d0a9c3f781db0742300e969cbn/a LummaStealer
2024-10-08n/aexe 980b1de2c47357f330dc420046d02135f5221bd930629df71c9a6ff8a98fdeaen/a LummaStealer
2024-10-08n/aexe e1c963d149c32de346ca067dd79bce2443e3221d571f23a66744c7d96e7e4219n/a LummaStealer
2024-10-08n/aexe 949284cdceedc4c1f0e30d8923d479b8526e420ba8174f5dda2799e1589e8cd3n/a LummaStealer
2024-10-08n/aexe 8c6bfb5f891a601116f68c2ce1faa64459bd65afbb49060411db97fdeff6e84an/a LummaStealer
2024-10-07n/aexe b41206a89bfff3e00603b1b71a08cac3dfba7bfef8961b1e1fe417cb68ba3fb6Virustotal results 41.67% LummaStealer
2024-10-07n/aexe 871de398ab9f199d5598614eb6701caa8b39d36fd004c2b71136ec23d3fe511dVirustotal results 43.48%LummaStealer