URLhaus Database

You are currently viewing the URLhaus database entry for http://unicupload.top/install7.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1857545
URL: http://unicupload.top/install7.exe
URL Status:Offline
Host: unicupload.top
Date added:2021-12-06 05:38:06 UTC
Last online:2021-12-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-12-18 21:27:16 UTC to abuse{at}ovh[dot]net)
Takedown time:12 days, 16 hours, 16 minutes Bad (down since 2021-12-18 21:58:30 UTC)
Tags:32 cryptbot exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-07n/aexe 029ab5454401a5c37fca1c8dcd240b6727cf0ccb8c5aa1d121196e2a76db5f4dn/a RedLineStealer
2021-12-06n/aexe 3442e8e15e6c420b85c4b6c414fbf5a3acff5de95811420d9bd5ac35ad24dcadn/a 
2021-12-06n/aexe 5729ee8b21c34d55143480f6f65b7f8840198a836ebf9888c01f5f82d7ffb578n/a RedLineStealer
2021-12-06n/aexe 66e9daa92584ce96a7517b422dece7cd9d785c2aaa9f7d4e0f692c4c66cc48b6n/a CryptBot
2021-12-06n/aexe 775603b6340a467b7bf6b3e8ffc4e44bfdfc7fe381fc992f4a492f85c1274764n/a CryptBot
2021-12-06n/aexe 7bb342c31ea9eec35425a8e70fd116811fb73b97991b4ffe809c6ae2b1ef7536n/a CryptBot
2021-12-06n/aexe fcdefab3b6310cd8115466e64dbca6a060ebec8ac44e052f7bd812a67e9c56dan/a CryptBot
2021-12-06n/aexe 4c8750d5994c8c0788c1d86899a097ba1a3a6823405bccb6395cc1be3db90968n/a CryptBot
2021-12-06n/aexe abbf2c8417e8102688fd7d91e5b9ab0c48fa6d87d31a4ef12f2bb9954628395an/a CryptBot
2021-12-06n/aexe 6f82a6e6473ba11c38d1aa2d6ad152861ef9edb83cf3cd064d9544ca0b7cc537Virustotal results 31.25% CryptBot
2021-12-06n/aexe 6cd3a9fdff12a2888dbf4d6ce090efc9c8c4b09ab2b5cf699aea3805c2249afbVirustotal results 41.79% CryptBot
2021-12-06n/aexe 1661445b9f4076cc2c1078352053a5fca0e5fa1edd9aad414548e28de2f5d9b6n/a CryptBot
2021-12-06n/aexe e3296867c946ce21af0082b7121e651aabe8e2bd643da9d88847f5b4057fd57cn/a CryptBot
2021-12-06n/aexe 23bb695918ca9566e677f2bc2a370b8a9875149d5acd9e04bcab9043cbef94fan/a CryptBot
2021-12-06n/aexe 5030c1e7d874c413f3baf5aee76b76b59a9d6837e5869315f1ce1e045d686720n/a CryptBot
2021-12-06n/aexe 23715d03c0e0a17c873b6f3927b4f5d462fdae213e0694e15c0b9c9819b89173n/aCryptBot
2021-12-06n/aexe ec33c4fdbf30fd5dfe02d8c393410689935d94c57b08bd075b7d836101bfac18Virustotal results 34.85%CryptBot