URLhaus Database

You are currently viewing the URLhaus database entry for http://unicupload.top/install1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1854029
URL: http://unicupload.top/install1.exe
URL Status:Offline
Host: unicupload.top
Date added:2021-12-05 10:53:10 UTC
Last online:2021-12-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-12-18 21:27:16 UTC to abuse{at}ovh[dot]net)
Takedown time:13 days, 11 hours, 2 minutes Bad (down since 2021-12-18 21:57:44 UTC)
Tags:32 cryptbot exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-07n/aexe 1332bfff330d5ed9d7bd00fd0a9a6705b5141cf9490c7efcdb23f19eeeda3150n/a RedLineStealer
2021-12-06n/aexe 15a8e9422ff4b53917e28a2f3abcfe734a0b9c290ca540c9b194dfea3d2462ecn/a 
2021-12-06n/aexe e9c41e16794c4977e98bc2fdd4c652f7159e6e809d39d05b348f9f21db7758afn/aRedLineStealer
2021-12-06n/aexe 789f6bd2c0e71b81faa86a72c2fa3d707be770a02b42c9e6bcc65c807cafbe82n/a CryptBot
2021-12-06n/aexe 5fdf493912d1e2431c7333b0b383ed1e9cb6ac282dda7d7c061c9a62e32f0141n/a CryptBot
2021-12-06n/aexe 799a505a2adab135062e2d60d12fbfad05626a87722cd9b571d8ded9e8de0fc4n/a CryptBot
2021-12-06n/aexe ed4865835135cadf63e72d80c1c8b23ca386f4a7cffbb5591deb9623f8f1c075n/a CryptBot
2021-12-06n/aexe b422f2e74125fa7f1f7a82d79009a89d2d01f3f122e0519ca37301e8cc9930f4n/a CryptBot
2021-12-06n/aexe 453f3a8d4335d6ec6ef71f6056615ff75652c6fc6c5b0172d164a3ade14301e5n/a CryptBot
2021-12-06n/aexe 14d79a6bb41a55b59d7714da5a91f77fd15ec6605d1214c71d8d638341336e2en/a CryptBot
2021-12-06n/aexe 4039ecb02c3a2bc7ab2e75cdd80f79b4e43aca6bff9b2fb4c969e866b7ae6e3cn/a CryptBot
2021-12-06n/aexe 8e8b8db2e7335fd42fac936c9c5ce681bb0f11e487db6a0a91575d995cc876fcn/a CryptBot
2021-12-06n/aexe 7b2b1d54665d427a48b82231d7b988c3673d58e8b4b8f41cbfbdaebf3c05dd62n/a CryptBot
2021-12-06n/aexe 082b042fe72f48ea12b013324363a9914032c18cfb0f05ca9d397bae32d61d54n/a CryptBot
2021-12-06n/aexe d85b3c6fbcaa82aa8db0609b7afa80013b55933c98ac94f021f1c4890a0d5e3dn/a CryptBot
2021-12-06n/aexe ded1ba0baef2a3245976c3d00a73730de8f3087ae1d105ba089fb313b7d38bcbn/a CryptBot
2021-12-06n/aexe 00b1c3c3fff221efafc98625f57321555659f24729755d63da7811e8ecf856dan/a CryptBot
2021-12-06n/aexe 971e30b164e70f4b0868b28cf6af2e2b38de02243e2b42df67bb1e44a4e4cb29n/a CryptBot
2021-12-06n/aexe 0a57f8e4b3e88ec842f2202905864c89e4fcf3a6effd7a981b6bade4feaafff2n/a CryptBot
2021-12-06n/aexe 26e96180dc13e9b263841269c402b3e7841db398092466aaf556ff2a0b432d27n/a CryptBot
2021-12-06n/aexe 38fd9f867ecc4d9f6ff2cec73ad5668f6c7879102eb022130d5185a34c86420fn/a CryptBot
2021-12-06n/aexe 38b772cb76c8a2b443281c0407941020887a39f4ee69fafd4e20c4c0616b9619n/a CryptBot
2021-12-06n/aexe 81e693e34127b5680a081d65b4924a16f0c82dab0b5c5d69953be892891e222en/a CryptBot
2021-12-06n/aexe 48df1b3a77516b3ab4ee86d78bcb50c7b6efebc67ce3047f157306c7876dd50fn/a CryptBot
2021-12-06n/aexe 032addc74c11b89435cdfa0ac7081a79e5ec961168f1d5f3365ff5a410c30d4an/a CryptBot
2021-12-06n/aexe 79bcc00d69cd9e2f134489c8e52c251453abbc85dd3d19c85982d46ddc261f79n/a CryptBot
2021-12-06n/aexe a9dd0d18cd86154218159f62e1c49eb237b601ed3035100d2956efba30bacbcdn/a CryptBot
2021-12-05n/aexe ad4d1edba6355c9caa43094db89272da2886b4a015c6351c188232fae5858d54n/a CryptBot
2021-12-05n/aexe 547d6c8f8a2d313f36c71654f9c5c51f8eef931b83f15ee65f652850df4f5806n/a CryptBot
2021-12-05n/aexe 43b060b1012926558b985ee57bd3003e6325e2823f7aaccd0d0ff84c66d88c48n/a CryptBot
2021-12-05n/aexe 90096719afbe0f10a6fcec14194298f38f2a772024759a1345480e316b65fd71n/a CryptBot
2021-12-05n/aexe 5ee2ee954df376c1f83ee88e23772fa4bc6e1413b2a50e3e4e2e6ab34c367931n/a CryptBot
2021-12-05n/aexe 640b5686ff1a2d98f76cfc5a6510814a5e69575a45850a390521478da0ece37fn/a CryptBot
2021-12-05n/aexe 93692e6b37548e5e57c9303fb2d3625e1775956d74406c1156d6ddedd7eb7428n/a CryptBot
2021-12-05n/aexe d8964e91921e7c9e3809abb58362fd203a47299883a498c913010d0018e89ac4n/a CryptBot
2021-12-05n/aexe 4a4d17776ac387fb178a5add214d78ee7bf9d3aa310755dc3126a201dc899abdn/a CryptBot
2021-12-05n/aexe 2801f48ffc4d1915ea04a2ed1c7934df64c686c00f9bf70208a15b9cf7eb7c80n/a CryptBot
2021-12-05n/aexe e86ead032d47662be098f76d2c1c4fc45af0af7776e8a5a8cec0f5766d7f1c22n/a CryptBot
2021-12-05n/aexe c1f846fa107d7979631a493f086d2b46963551406a17d9ea27607ffc73783524Virustotal results 33.33% CryptBot
2021-12-05n/aexe e782afdff828c7152e6e0280e2539b1273cec3cb61676bb9219129a495d43479Virustotal results 32.31% CryptBot
2021-12-05n/aexe 13fe6c0605c2d508072d0f90f3434035b712e1a95c0cb849568df94ad213f31an/a CryptBot
2021-12-05n/aexe abdc844ac718c9381f483f9dd02c3274dbd0773633b390a46566e39ae931dcd2Virustotal results 25.81% CryptBot
2021-12-05n/aexe bd19246dce9948507ba7b5cd2bf305503ab2ab5ac15ba83eb1f6fac059b92f77n/a CryptBot
2021-12-05n/aexe 7a40d2805404ec982a609e9426a3b1f3fd4fe65dec54d5138b7d7f2929cfbfdan/a CryptBot
2021-12-05n/aexe a37f81972d7e7b07c267967df9445b75c618012654fe25964859540969971b27n/a CryptBot
2021-12-05n/aexe 7566cafb19648f4bd31318201df9eaf8a47ce0633d7c76de92bca0a9867bc2adVirustotal results 30.77% CryptBot
2021-12-05n/aexe d912f1611688d78496c3d637b84853b3d3537cc67b18f63c6f0660dc5f7e6ad9Virustotal results 33.87%CryptBot