URLhaus Database

You are currently viewing the URLhaus database entry for http://hypercustom.top/jollion/lipster.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1547071
URL: http://hypercustom.top/jollion/lipster.exe
URL Status:Offline
Host: hypercustom.top
Date added:2021-08-19 19:02:05 UTC
Last online:2021-09-01 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-08-19 19:03:02 UTC to abuse{at}mtw[dot]ru)
Takedown time:12 days, 22 hours, 48 minutes Bad (down since 2021-09-01 17:51:48 UTC)
Tags:32 exe opendir RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-31n/aexe 1c5a12d8a0a7ccfb9bf78240224b71d869e825b2bb0a73288d8d042cc34be29cn/a RedLineStealer
2021-08-30n/aexe 4049e0760dacc7ca0416b8da62f3fe59cd3a5fabce46650bb366844bd55ed1d4n/aRedLineStealer
2021-08-29n/aexe c0d9890c15842c30d526025f7678e09b216020c3dc935b0d4cfa102c7eb9ae2cn/aRedLineStealer
2021-08-28n/aexe 297ca11e459338e040b0a5982d78961836885810ac8190d892702a4df2dfb908n/a RedLineStealer
2021-08-27n/aexe a060b03b63df3b3b1d7b26a08a333cbc83ca0bebf2beb7f190d1479d0904f384n/a RedLineStealer
2021-08-26n/aexe 4a623a0d14bbcbda9790a41e82bd9ceb67ee280d1c66df210f751962a1c09636Virustotal results 40.30% RedLineStealer
2021-08-25n/aexe b90c965f7af0f19fb8e248be73d113a0538c9e65cfadfbdda8b0da675dfc5c67n/aRedLineStealer
2021-08-24n/aexe 29af6bf7a7138bed7268f6600e8923132f7d504e0a4fccdaa295d56ea71168c7n/a RedLineStealer
2021-08-23n/aexe d4e1fe0e12967112cb8bb178cebdee1a835d469ba917b8d67c4a81427303acfan/aRedLineStealer
2021-08-22n/aexe 4b280b48fb43544adea3da373fff5d0fe9e34ca2d2257cccf13650044fe47bf4n/a RedLineStealer
2021-08-22n/aexe 81fecf94807506f98b6fd613686b3b4f09e2a5ef8138ce35735ed8c785245104n/a RedLineStealer
2021-08-22n/aexe f5cc2aee625003fa562e1deb5c636dd16dfb6e7845083c6245d33b5e814e1e0bVirustotal results 26.47% RedLineStealer
2021-08-20n/aexe 0c1fc2b2d57ed0e1a22e06c0a700996b36646d4a27278117fda266949aeb86abn/aRedLineStealer
2021-08-19n/aexe b55704fa2fb3db346332e5cfa37a04628a2ac747184e4104c929704eb4b5b2b4Virustotal results 45.71%RedLineStealer