URLhaus Database

You are currently viewing the URLhaus database entry for http://unicupload.top/install2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1854031
URL: http://unicupload.top/install2.exe
URL Status:Offline
Host: unicupload.top
Date added:2021-12-05 10:54:10 UTC
Last online:2021-12-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-12-18 21:27:16 UTC to abuse{at}ovh[dot]net)
Takedown time:13 days, 10 hours, 53 minutes Bad (down since 2021-12-18 21:48:57 UTC)
Tags:32 cryptbot DanaBot link exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-07n/aexe cbc5d7db8e27b2369a1d83c2d8615c1dbb6263e8b80c4b12a86493c9df093716n/a RedLineStealer
2021-12-06n/aexe 2c97180b9aa8267542d86d5420f2f95a02413c206ea250d93edf8b6ac5b55b04n/a 
2021-12-06n/aexe 78269a6d5bebb872265223b75bc6f504c20e012371eaa41a85434f0aff9c3354n/a RedLineStealer
2021-12-06n/aexe 0ec7a62fd8ae56fdb8e24b24752f2c1a1ba1f717500e96da3bfe893b8479c1c5n/a CryptBot
2021-12-06n/aexe 3bba9484dab9273f3d4962e1980376b0683f698789f49e42c8af3eb5b63ea26an/a CryptBot
2021-12-06n/aexe 37f9273a098d176f88af1344614069701fe9df63ba51e0ebe278b92d3628b4abn/a CryptBot
2021-12-06n/aexe 6dc0c842b4b2d4c9ce67fcd32dd1e3f14144a08bee6aa52e7a59e48258618cd2Virustotal results 31.82%CryptBot
2021-12-06n/aexe 5f644edcb574810a3b55f4d5a7b2e9fe4755447b058afd5b604e0e0cd1ed840bn/a CryptBot
2021-12-06n/aexe 69789bd1d998e76b8888ae732033830210e16b5db4991121d03e14ab81127bc8n/a CryptBot
2021-12-06n/aexe 82b85acf3ff333fb6bf3790da73f48d9f6eaaaf4fbd66a42e9a927ced6a111een/a CryptBot
2021-12-06n/aexe b3cbbdd23f91a741beb12d3eb4b524b44ad0209b6ad1819d641c400195d47c64n/a CryptBot
2021-12-06n/aexe a38e672b65e47854544f20744fe9038644c4ff64a90d2673ad7898095bc72517n/a CryptBot
2021-12-06n/aexe 84c50f989d48559fdbd2a589b2aef965e3a41007e08591e28a7580bad732be26n/a CryptBot
2021-12-06n/aexe 7a901e5b42a62e6416dba2cd60ab2cda57501e7bb0f057db4956784216bd6977n/a CryptBot
2021-12-06n/aexe 15e7b915c624821c3cc6fa0fce59b271d33f49d58806cc20e09e9c487d05637cn/a CryptBot
2021-12-06n/aexe 198e29d57643b90973400b29c83fef7ae4aab4fd071df084da3318c109660b31n/a CryptBot
2021-12-06n/aexe 0da57adaa80cc906a122bcf26d529066121c82e31c567eec0012409706aafc6an/a CryptBot
2021-12-06n/aexe 496ac94cdbefb4670d6450feb32d142ca1d6dd5996563f5730e26e29cc56fc0dn/a CryptBot
2021-12-06n/aexe d1616ab497e5672c2e9d80c49ff71275aaceccb2b9fc1f06a361c7be5f7a7895Virustotal results 37.31% CryptBot
2021-12-06n/aexe ecb34d9625c29a3ecd268c269bd82c4cb616b1aeb9794599065db4c8cda77dfbn/aCryptBot
2021-12-06n/aexe f6d6c92df882d7e3dcbb0f000afa9ad72be4b74209663becb96a8626bed732a0n/a CryptBot
2021-12-06n/aexe 1f1e23d6b51c8c356f04526201300ce8e204715afb35e2bc0a598ed24411a82an/a CryptBot
2021-12-06n/aexe 1996666515789b46a1f29b3afb2e1d643d194c2159522bb334ef8a06e5e5d954n/a CryptBot
2021-12-06n/aexe c5d10d499b05e1154ab51e57bc2031f341678ed4ef3d89fdcad823a4f22047cen/a CryptBot
2021-12-06n/aexe 26d102c24337fd697d276fdd3ba84929ec0a184a9bfc1f90bf07813f4917d08cn/a CryptBot
2021-12-05n/aexe 3a52a9ccba82de3e6b9839aac1ddb5e03a01aa6fc6f010acee8ff688ef627e22n/a CryptBot
2021-12-05n/aexe 178c3725efd9aaf169fef9c4de0fc379af90f2e66aa3956e814b2f60a66f76f5Virustotal results 34.85% DanaBot
2021-12-05n/aexe 98ab5c4faa71cc5fa23031b4f818837d43194939214699fe071d041c0c3cf4fan/a CryptBot
2021-12-05n/aexe face1fd146ead998a6b5a76d7671c8d8eaa81a10a3c987e4b0af8700b80920ben/a CryptBot
2021-12-05n/aexe 7967a3031aeb3a29c083e07fe62ec09c52a925c74737365b94aa2f69ecb8a59bn/a CryptBot
2021-12-05n/aexe 0919009df52d4eaf05e0fee0daa622b80f324eb1b727252fa958fc1bca24f8b3n/a CryptBot
2021-12-05n/aexe 077e0a47e1f34824a4725b8a760182b5bae87bbbcc37bd3aabf5f28465aa58e6n/a CryptBot
2021-12-05n/aexe a8bf72dbb68b1bc47c50c265554a949152bfbd36c13b5ceffc674167fc8e34cen/a CryptBot
2021-12-05n/aexe 71d980ce67e21c9d3e4f0e5ebbd24c57efcb50c1a78abb569faf9e6c8fd3c5cdn/a CryptBot
2021-12-05n/aexe d848062071ad2f211fab5cdbb32ab65dc2de29e8b472b381d5ac8d6d101ba09bn/a CryptBot
2021-12-05n/aexe c8ab0b61ddee5c950e3b88568c41d22c27c16e83dd6d723224fe202648e565fan/a CryptBot
2021-12-05n/aexe e9df9a4ae2556bf8106737e06c8364e4fca6283c2a2c0f761575c00796a34f17n/a CryptBot
2021-12-05n/aexe 9ea1f08deeb2ddfa9b8fd87ff1768df3a6f62341eb21c4691f9598e48e89c7b8n/a CryptBot
2021-12-05n/aexe 16ede993d58771be7fbcf00993cfe56e413c27adc79c6eeb19232e34bf2413afn/a CryptBot
2021-12-05n/aexe b37102b909b0a0c1520badb2ed36c6e4556c02dc27ce9b2d210792ff6632fe47n/a CryptBot
2021-12-05n/aexe d06093bf48a5688ef82b5a4d38ad24fbf4d75d9ccbb09a59a95f8c6440f0caedn/a CryptBot
2021-12-05n/aexe fe7ddf1490cc7a3a5dd4f322f3167f433914cdf976cba235c45b0c2a14d63424n/a CryptBot
2021-12-05n/aexe e0c124e496535864bd9098df513abae532e7f13ae1164144314a4bd581d524abn/aCryptBot
2021-12-05n/aexe ff40be49c30929076b2565704eec2a93bf402bdac7fa990ee6625a9af07c87ecn/a CryptBot
2021-12-05n/aexe 58bfb3fed6bcc98498a58c3f4855525263b50e356282e4f91825b29397a8d825Virustotal results 31.82%CryptBot