URLhaus Database

You are currently viewing the URLhaus database entry for http://unic11m.top/install2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1857258
URL: http://unic11m.top/install2.exe
URL Status:Offline
Host: unic11m.top
Date added:2021-12-06 02:37:10 UTC
Last online:2021-12-15 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-12-15 11:56:16 UTC to abuse{at}ovh[dot]net)
Takedown time:9 days, 10 hours, 0 minutes Bad (down since 2021-12-15 12:39:23 UTC)
Tags:32 cryptbot exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-07n/aexe cbc5d7db8e27b2369a1d83c2d8615c1dbb6263e8b80c4b12a86493c9df093716n/a RedLineStealer
2021-12-06n/aexe 2c97180b9aa8267542d86d5420f2f95a02413c206ea250d93edf8b6ac5b55b04n/a 
2021-12-06n/aexe 78269a6d5bebb872265223b75bc6f504c20e012371eaa41a85434f0aff9c3354n/a RedLineStealer
2021-12-06n/aexe 0ec7a62fd8ae56fdb8e24b24752f2c1a1ba1f717500e96da3bfe893b8479c1c5n/a CryptBot
2021-12-06n/aexe 3bba9484dab9273f3d4962e1980376b0683f698789f49e42c8af3eb5b63ea26an/a CryptBot
2021-12-06n/aexe 37f9273a098d176f88af1344614069701fe9df63ba51e0ebe278b92d3628b4abn/a CryptBot
2021-12-06n/aexe 6dc0c842b4b2d4c9ce67fcd32dd1e3f14144a08bee6aa52e7a59e48258618cd2Virustotal results 31.82%CryptBot
2021-12-06n/aexe 5f644edcb574810a3b55f4d5a7b2e9fe4755447b058afd5b604e0e0cd1ed840bn/a CryptBot
2021-12-06n/aexe 69789bd1d998e76b8888ae732033830210e16b5db4991121d03e14ab81127bc8n/a CryptBot
2021-12-06n/aexe 82b85acf3ff333fb6bf3790da73f48d9f6eaaaf4fbd66a42e9a927ced6a111een/a CryptBot
2021-12-06n/aexe b7df2df1665236f307263155008233be3ccf8b15621a8de4e6ebc6a1a430a0b4n/a CryptBot
2021-12-06n/aexe b3cbbdd23f91a741beb12d3eb4b524b44ad0209b6ad1819d641c400195d47c64n/a CryptBot
2021-12-06n/aexe a38e672b65e47854544f20744fe9038644c4ff64a90d2673ad7898095bc72517n/a CryptBot
2021-12-06n/aexe 84c50f989d48559fdbd2a589b2aef965e3a41007e08591e28a7580bad732be26n/a CryptBot
2021-12-06n/aexe 7a901e5b42a62e6416dba2cd60ab2cda57501e7bb0f057db4956784216bd6977n/a CryptBot
2021-12-06n/aexe 15e7b915c624821c3cc6fa0fce59b271d33f49d58806cc20e09e9c487d05637cVirustotal results 34.85% CryptBot
2021-12-06n/aexe 198e29d57643b90973400b29c83fef7ae4aab4fd071df084da3318c109660b31n/a CryptBot
2021-12-06n/aexe 0da57adaa80cc906a122bcf26d529066121c82e31c567eec0012409706aafc6an/a CryptBot
2021-12-06n/aexe 496ac94cdbefb4670d6450feb32d142ca1d6dd5996563f5730e26e29cc56fc0dn/a CryptBot
2021-12-06n/aexe d1616ab497e5672c2e9d80c49ff71275aaceccb2b9fc1f06a361c7be5f7a7895Virustotal results 37.31% CryptBot
2021-12-06n/aexe ecb34d9625c29a3ecd268c269bd82c4cb616b1aeb9794599065db4c8cda77dfbVirustotal results 35.82%CryptBot