URLhaus Database

You are currently viewing the URLhaus database entry for http://awuqze02.top/downfiles/file.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1107223
URL: http://awuqze02.top/downfiles/file.exe
URL Status:Offline
Host: awuqze02.top
Date added:2021-04-12 09:06:06 UTC
Last online:2021-04-14 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-04-12 09:07:02 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:2 days, 5 hours, 4 minutes Poor (down since 2021-04-14 14:11:45 UTC)
Tags:cryptbot exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-04-14n/aexe a12e61120c29498cb7e61c9074a5c854672a71a76b968cdd9db9e17496d20e42n/aCryptBot
2021-04-14n/aexe e88359d307506ada39f87134c98b63c9621230e23defa3489b256518fa013289n/aCryptBot
2021-04-13n/aexe c175d856f943f02ad49cc6cbc87dbf1ae98fd61d913b8a3f65fcaaa108702f30n/aCryptBot
2021-04-13n/aexe 8f4429f86954c0f69125d0b5aa2336b24056e75514390c7f8450d97fba84a584n/aCryptBot
2021-04-13n/aexe 1b5e4b6d3d7e43bfc663ffc92778e7f107104e300d10b99c6f1dfc6171e835f6n/aCryptBot
2021-04-12n/aexe 4d7ae63a959bf1d06a52493700ad2f6d09dac1aa618cdd2736e535f8cf60966bn/a CryptBot
2021-04-12n/aexe f42553b4409992bbddc1df8b716596727762a191055cd2eebb3ced648cf5384fn/aCryptBot
2021-04-12n/aexe 4b6f69b3ade95902351f28e2862234569b3ddd1166b1e936441b530524a32c33Virustotal results 39.71%CryptBot