URLhaus Database

You are currently viewing the URLhaus database entry for https://bitbucket.org/mminminminmin05/testtest/downloads/updatej.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1083198
URL: https://bitbucket.org/mminminminmin05/testtest/downloads/updatej.exe
URL Status:Offline
Host: bitbucket.org
Date added:2021-03-22 07:16:08 UTC
Last online:2021-04-02 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-03-22 07:17:02 UTC to abuse{at}atlassian[dot]com)
Takedown time:11 days, 14 hours, 44 minutes Bad (down since 2021-04-02 22:01:02 UTC)
Tags:exe RedLineStealer link RemoteManipulator link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-03-23updatej.exeexe 3e4eb1c27be02788d118f4acee417ca6fd1c317899bc4d41be3aa91dcbd000f8n/aRemoteManipulator
2021-03-23updatej.exeexe 9aa719fceb0d8a043c1e0bc487509e59e8c614740ed442cab728d0d7716502aan/a
2021-03-22updatej.exeexe f8fbe166151947ae09b6b0244fc0867d41df8f46e1652e4edd89a4eb420adfa2Virustotal results 28.57%RedLineStealer
2021-03-22updatej.exeexe b99cee2c1bc77f8cdcef8b7c706120a44054da0cbf6a314161c17fc33155d93en/a 
2021-03-22updatej.exeexe c1fe973ec51d405df053a593909e50a2f6929e95966557e0b5188861ca983c56Virustotal results 21.13%RemoteManipulator
2021-03-22updatej.exeexe a530aa8c670be7b56608fc342b9f98734d3c038d7dae02108d8073fe7cb85804Virustotal results 46.38%RedLineStealer