URLhaus Database

You are currently viewing the URLhaus database entry for http://unicupload.top/install5.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1853607
URL: http://unicupload.top/install5.exe
URL Status:Offline
Host: unicupload.top
Date added:2021-12-05 07:32:12 UTC
Last online:2021-12-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-12-18 21:27:16 UTC to abuse{at}ovh[dot]net)
Takedown time:13 days, 14 hours, 2 minutes Bad (down since 2021-12-18 21:37:52 UTC)
Tags:ArkeiStealer link cryptbot exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-07n/aexe 014ad60fd2c294dd8fb63c022961e17df1ba74bb1209a64634112913edc44983n/aRedLineStealer
2021-12-06n/aexe c8ee4f813016ec8b590b4e588817c16fa7e8cea9a1b0365254254a5b01d898f6n/a RedLineStealer
2021-12-06n/aexe 25392b7aecc8a6ad2d0b4cd546115eeeaa9069c60f9002001df83c9de78350d5n/aRedLineStealer
2021-12-06n/aexe 55094cc8f0673a64b303f969f093b41353725ef7b963a9128e1f00143a29b7e7n/a CryptBot
2021-12-06n/aexe a6e3661fd30c7390f458fa3086b3b0712d0a257f9c7b7af2b137bd4d55659f03n/a CryptBot
2021-12-06n/aexe 2567c5b0a4d8e06e5e324417a9b49b8cea3cfffa1d9444de85a9b469e92b1be1n/a CryptBot
2021-12-06n/aexe 31efd803dbe615e98301fb55c581fce281b1a8a9e5f213f5d834489b30cee4d4n/aCryptBot
2021-12-06n/aexe a0f59f8ba8d2369a478b619aaac659bad536b222ccbe1ca425dfdb46d98706b5n/a CryptBot
2021-12-06n/aexe d033936fc89fe40b0d769d101e13936c738de6ecfbc6eade4be3297293d77d44n/a CryptBot
2021-12-06n/aexe cc0329f8519de871293036296544e4a05aa7fe3c784ba2fa8e335fbeea036060n/a CryptBot
2021-12-06n/aexe ea0ed0ee767158ebb0d7efd9d241a6b58510c6e028877f33ad0b7c6d87653fc8n/a CryptBot
2021-12-06n/aexe 9c26e0fa275d047891a17d509e50764bc2a37c4329c62fb2406fbd131050a4dfn/a CryptBot
2021-12-06n/aexe 25969bd080f987bd987ffc0c21f796d8f534dff56228b1363e02332c3d8e5b31n/a CryptBot
2021-12-06n/aexe 3829114af6d1923729fc3bf0da3424acab9db3fbaf01abd826462e379b92c051Virustotal results 39.39% CryptBot
2021-12-06n/aexe f82981106dff6f099816e102033397040931ce634333ae028e4fff5b5b5167fdn/a CryptBot
2021-12-06n/aexe 4730485a3212cc6c6ff5ebc48c0e15bf8cadc12f73bfe2ec5d05d4f10c24c06fn/a CryptBot
2021-12-06n/aexe 18a9343674ea1d2fab05914f553951504da76a1c07782e9c0bd1079dcef6ea22n/a CryptBot
2021-12-06n/aexe deecec837625f2103c078ca63bec242aba6f65d663b2d49330fd965dff73f2c6n/a CryptBot
2021-12-06n/aexe 74f2fbcca5fa45d33ceef58d6e241766e1fa78735010f5ed319765acaa93e1aen/a CryptBot
2021-12-06n/aexe 08959faa7a6acda5435fe93a4cfd340924730dcf569e4217cf63e8cebd369e11n/a CryptBot
2021-12-06n/aexe 84c09744f369a484176d721e7a973e16b1f4b380862cf32481ba5f7abc91e1b6n/a CryptBot
2021-12-06n/aexe 2f1e89ed9aa9e0d0df0f61333db58529e4955e7f60248fd89bbd5338fcd97b01n/a CryptBot
2021-12-06n/aexe 935607dc220e5d5dd2d297cde9653fd57ba69dda99885f3b72a75ed135316907n/a CryptBot
2021-12-06n/aexe 2ac88083b650f4667331e48e4a95ea0d06d482497e57d96c37d8589f9c26945fn/a CryptBot
2021-12-06n/aexe c81e5bd84742db7333c564eec6efe86765746f4e1ecc9ebfb5fd9ab88cc85e7fn/a CryptBot
2021-12-05n/aexe ad9f2014f8a754b43c16fb7364f539559e3365326189bee83f4154a0896fdc9en/a CryptBot
2021-12-05n/aexe bf2a6a6a3ace1fc56eb98fd190c5ddf9835c26f18aa88426c86e575cfa8f0a92n/aCryptBot
2021-12-05n/aexe 1e8ee931327af6c156df3101c1d65db241e1ad99b74437083ea197da5c4326aen/a ArkeiStealer
2021-12-05n/aexe 72c515324b8b96827207a091467e97142e54599fef22ad9737645d04ef3dd200n/a CryptBot
2021-12-05n/aexe d83668f7314d1291aa2f4aab6cea784816a8771a44912daf2efb3b5db4e11dd5n/a CryptBot
2021-12-05n/aexe bb8e8ca85ac74d87eecc6883b4ace99ddb160939fb8549ffbb8c96e4c8ac2bd8n/a CryptBot
2021-12-05n/aexe 35c6286acb824a980eec28c790209e5c3b4fdf032dcbf09a6a46a70e8c48f588n/a CryptBot
2021-12-05n/aexe 700903a784229556baac4eb6cd54e048a5ed2e696d1a67e4dae8308b757da1f1n/a CryptBot
2021-12-05n/aexe a6420a6699fd91364e32303ed9651cacd6b288d5df3e3a4bc2221fe69a0f679fn/a CryptBot
2021-12-05n/aexe cc377478ed4254c6dbe80c8fc032d4fc86b877c2a648a451b02523ea58b59426n/a CryptBot
2021-12-05n/aexe 5e1ae6d0241cd9b5b67d6afa7054961528445eb37f84043053426169d26bab68n/a CryptBot
2021-12-05n/aexe c20709b7e4f6fbbe14c43f0a043e2b32add7acb1c4997267f1036e860fb571d9n/a
2021-12-05n/aexe 037a8f0e0157f4e4766bb72e537e3104c4ea14d824982e76402072d2121f53c5n/a CryptBot
2021-12-05n/aexe 6ebcad9d4b14ed27fa163ba96790da397a9d7e6b9033e80adc1ee19e17bb0e22n/a CryptBot
2021-12-05n/aexe 0ad8b32ac615d768cd50a21ae267ded6d51e8cd5506060519b4d69bf76540fd2n/a CryptBot
2021-12-05n/aexe bf66db9d9abec5a1a158c8feac797a4ce3270b4d7f394df77882d262f61fe18cn/a CryptBot
2021-12-05n/aexe 1d084b4be889f9dedf0e8241835242cfa4bc7aacc0be097bc4c02debe479e1a8n/a CryptBot
2021-12-05n/aexe 35ea645fd4f6db3a1f721b0cc77e660edc694549f4a6f0b82bfcd314fd973e59n/a CryptBot
2021-12-05n/aexe df55425ae939012103ec7a756f13b1fc886a4be6562d0dc72e4bcd5c2c6e5fafn/a CryptBot
2021-12-05n/aexe 1ebd2cc832b8e9bfe6b984c972ac66c5487208d637c9cc6508a4faa450b6b1d9n/a CryptBot
2021-12-05n/aexe 1d787037537ea2bd54bd15fe4d30ee090e81d12a974a4e7b43fc02b7f243db8bn/a CryptBot
2021-12-05n/aexe e72d6b4f1c18ed7ffe19bf0e029e0da687881e667a74b41f677ebc2dacc34d05n/aCryptBot
2021-12-05n/aexe dfda41812ca3d466a39a0cbd7bfe810e28c35963c5fa63826758e822f733dbcen/a CryptBot
2021-12-05n/aexe ac10ba0e6f390cdcd0471d34f78ada6b6b61cdf64ac6918fea5e5af2372fe1b6Virustotal results 31.25%CryptBot
2021-12-05n/aexe 66a377f8067255bd98a60a234a331c47f050dc8158a190cd5ad04afd3d0cc62cn/a CryptBot