URLhaus Database

You are currently viewing the URLhaus database entry for http://unicupload.top/install4.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1854032
URL: http://unicupload.top/install4.exe
URL Status:Offline
Host: unicupload.top
Date added:2021-12-05 10:54:11 UTC
Last online:2021-12-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-12-18 21:27:16 UTC to abuse{at}ovh[dot]net)
Takedown time:13 days, 11 hours, 0 minutes Bad (down since 2021-12-18 21:55:57 UTC)
Tags:32 cryptbot exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-07n/aexe a853dc01d947af712964b7aa5f26d8d68f574f669cb9f632400a02d41907175dn/aRedLineStealer
2021-12-06n/aexe 646b7c888c54221556f191a77f9b3fc4a0c577d6dce5c32aba5c784cb1053f2cn/aRedLineStealer
2021-12-06n/aexe 47e6e14d657f7e04efa24c01587d9930ddf8fd555bb789006c45556969a18f46n/aRedLineStealer
2021-12-06n/aexe df310cfef83d83a977b8143f3f7b47c4df85c0f5bc89dd8e5571dec919ef1c41n/a CryptBot
2021-12-06n/aexe 0b560ae70e9c7691564a672547c834dc3e6c1dba1706d16ee2eac8960234bf51n/a CryptBot
2021-12-06n/aexe 8ea555522a54c192da5ae06b8e36acc41a2330a795c8c056efbc1022cff99be7n/a CryptBot
2021-12-06n/aexe 1799e456a5a59211c941999020c68ce6141fa3b67ed1d318edce1886a6f4fed0n/a CryptBot
2021-12-06n/aexe eecc1d3e41d3e42dd76f23ac425c607d62841866a7dd7cbff9675d248ee6fd18n/a CryptBot
2021-12-06n/aexe d507e906fb0f8d73c979b491f4b424c2eaed57c79c01a5833b464763803dc05bn/a CryptBot
2021-12-06n/aexe e3a7c52326dbf18214299b3aeb8afdc6e8c774ad62830417d2cf74fd96bfed55n/a CryptBot
2021-12-06n/aexe f1939b35937e2b69a9067772e429246182f96ee3a595c4f8ec911e4cbfab8675n/a CryptBot
2021-12-06n/aexe e6798c2b4405aefb1f1d7e76378a5b7951f7f7b5924984086f22563c1039e07cn/a CryptBot
2021-12-06n/aexe 370c2269b50881ee05f1edc957abc9b5738bb9e59886c8d0b9ba468974ff463dn/a CryptBot
2021-12-06n/aexe e43427d8c77aefe11c04ef9be56dd0a8f07a952ddf33ea547ee24115a69473e6n/a CryptBot
2021-12-06n/aexe 94ce0e13d2f1dfd3dba312f2698835713560afce20c7cf4014887842d5e7002bn/a CryptBot
2021-12-06n/aexe d78ac266ee150ae9b3f89a8094dd8a2e9ae7f244f72a33ad386d5287ccfd20d1n/a CryptBot
2021-12-06n/aexe 2f83eb934e4ddd4277ea9e8b6764d3fcb6bc729f26bcb24dcdb27f3e930d566fn/a CryptBot
2021-12-06n/aexe 7f6087d0f69b0637a40bb84b33127c6ed7b148225c48ccf200cfd3f7c9e57429n/a CryptBot
2021-12-06n/aexe 8f91477ce40680cfffed8cc77a5d67087748f85071d03972ae5bd18357a4611an/aCryptBot
2021-12-06n/aexe 66d52a1af11f9ff39f3cc19330c53f08b3156fec877169d7f93437a6c4b07e8an/a CryptBot
2021-12-06n/aexe 3c7b103572078b664cd26847f4fddde075bcd05865adc13b6b9a4c494cf0c6b1n/a CryptBot
2021-12-06n/aexe 5da192b1a8ac96c7ce2b1eda30912e8b652f2014cc487848288ecc82205096e5n/a CryptBot
2021-12-06n/aexe 2317eb577d96590ba1589718174520b921dcc9e1bcb1c24082274d50cc93339dn/a CryptBot
2021-12-06n/aexe 9603df8d8b62c0448669d9fb418e94c78430b6728612d97b32d17a03d791b210n/a CryptBot
2021-12-06n/aexe 07a4554e9d4c57919118c180fee258e0f19eeed9a25a6031bc52429d6888c130n/a CryptBot
2021-12-05n/aexe 299df1be8be26fc7bdd6403e1808a06ce1e78b687b1072756de0316b67f1b9f8n/a CryptBot
2021-12-05n/aexe 326672374bfbee1c4aa8d6546b39cbffd8a9ac913423fa1b21927e278442eeben/a CryptBot
2021-12-05n/aexe 3fc5b8f35cd3dac4a4ab29e03965c7d737ee4c905d2330f7f02bc003eaa2a3a3Virustotal results 35.82% CryptBot
2021-12-05n/aexe 75b6750b3b0c80c2a5e1b18856c255176318149ccb3ec62baac34d397c1e78c9n/a CryptBot
2021-12-05n/aexe 5738457507f7b204fd491a3251b2fa282253d7bd108c3030d22d89a9575610a0n/a CryptBot
2021-12-05n/aexe 273e77ed87b7b7c06ee56c716af8cfeb8f2547bedc21ec388aac785ed872df9bn/a CryptBot
2021-12-05n/aexe 20fa8dc6c13726e44bc3704cb2ed5fb42c7bca0c3a1c9bb38bb3cce2ca384ca7n/a CryptBot
2021-12-05n/aexe 0e993c50c69cd070247ff85146927fc80137d610dc9fb4d9be74fd1883bfa8bfn/a CryptBot
2021-12-05n/aexe b942b2958ea89cad897bcbf9204e7b2d01622aea3eedcd12e71531bcf31ff0bbn/a CryptBot
2021-12-05n/aexe f747b57ac19f41aaab7eb53d65a665a97d8bd89f0d16aa72afad9a2798580ea0n/a CryptBot
2021-12-05n/aexe 4870652f2d182b5178e2b0372f455b84dc7eb501aa133e30261a40d9a215e9cbn/a CryptBot
2021-12-05n/aexe af5f292d3af63afe0d8ba2cb32f4e2f312f87a867e5ba134fc56926eee3c9134n/a CryptBot
2021-12-05n/aexe 136620e27177773f569597ae276bc5b676277077892c97b6c755dc2b35c5dd10n/a CryptBot
2021-12-05n/aexe d58b2591c63acf2a96bcc407fddee9c641a054eb1738af2df66006d36fda1785n/a CryptBot
2021-12-05n/aexe 1cf9b6b1002bbcf929d44445e131be330da0f1b79e78d960863baf4afe5f92f3n/a CryptBot
2021-12-05n/aexe b438fb65fbdc17fb3ff809bb0d6b76249723780ef43c56dcf23075260bab7eb7Virustotal results 32.81% CryptBot
2021-12-05n/aexe eca85ed64810dba29a923a974fdb0d8999dad4704e9de6f3d080edd82b25ada0n/a CryptBot
2021-12-05n/aexe dd1e21e0db30e41a37d65d82c7843ca15de77a8c12b90a8911bef1a8a3d2dc88Virustotal results 31.34% CryptBot
2021-12-05n/aexe efedecf2ac9040b4ba31a44a3c8ae15925e567d7304d8717bd40ece3b7d6a0ccVirustotal results 35.29%CryptBot