Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
downloadstep.com
Domain ⚠ 9 PULSE HITS
↓ CSV ↓ JSON
45
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 45/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
20/30
9 pulses
VIRUSTOTAL
25/35
14/94 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
0/10
NOT LISTED
General Information
Indicatordownloadstep.com
Whois Domainhttp://whois.domaintools.com/downloadstep.com
Typedomain
AlienVault OTX Analysis ↗ View on OTX
9
PULSE HITS
Pulse Hits 9
Indicator Type Domain
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
InQuest - 25-04-2025 2025-04-25
InQuest - 24-04-2025 2025-04-24
Lumma Stealer Rising MaaS Threat with Sophisticated Delivery and Evasion Tactics 2025-05-05
Lumma Stealer – Tracking distribution channels 2025-05-02
Lumma Stealer – Tracking distribution channels 2025-05-01
VirusTotal Analysis ↗ View on VirusTotal
14/94
DETECTIONS
MALICIOUS
Malicious 14
Suspicious 0
Harmless 48
Undetected 32
Reputation 0
TOP DETECTIONS
VENDORRESULT
ADMINUSLabs malicious
CRDF malicious
Chong Lua Dao malicious
Dr.Web malicious
ESET malware
ESTsecurity malicious
Forcepoint ThreatSeeker malicious
Fortinet malware
Kaspersky malware
Lionic malicious
URLhaus (abuse.ch) ↗ View on URLhaus
✓ NOT LISTED No malicious activity found in URLhaus database.