URLhaus Database

You are currently viewing the URLhaus database entry for https://my.cloudme.com/v1/ws2/:portable2022/:Setup_49/Setup.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2253827
URL: https://my.cloudme.com/v1/ws2/:portable2022/:Setup_49/Setup.exe
URL Status:Offline
Host: my.cloudme.com
Date added:2022-07-04 14:19:07 UTC
Last online:2022-07-04 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: vxvault
Abuse complaint sent (?): Yes (2022-07-04 14:20:09 UTC to abuse{at}ip-only[dot]net)
Takedown time:1 month, 11 days, 23 hours, 38 minutes Bad (down since 2022-08-15 13:58:10 UTC)
Tags:exe ModiLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-04n/aexe 0834d1130448653e3c1073c7939b5e96a720151e8c06d3018e484325a0e83fe4n/a 
2022-08-02n/aexe 06bf487d36605805cdce1d763cc85ba5e77283ff10b6dbdf662219cddd62eca1n/a 
2022-07-22n/aexe d3e3524a771be780f39173d7af00dcdc2e59a9171d8eb9bc7edfc9f5bdf6ca3bn/a 
2022-07-17n/aexe fa068e8dba36791c940832a8a819d6a525476c37d11584a620ee9fed1a9c8de4n/a 
2022-07-16n/aexe 829ce45768250b561f622f4eee711cbeadd704b8ec9f03f65af00f6a0878a5abn/a 
2022-07-08n/aexe b277ef0b20dc91d716d1981eb63c4f08686e0f1500b24aba335deb72cb95d8f5n/a 
2022-07-05n/aexe 8dd44b611bf845b90142917fb212b7f9c5fc4f1bbbf9142e905b6f8d3d081f48n/a 
2022-07-05n/aexe cd7dc589ea6e74110e4e3eabe5815934ef0d229d6f4c972d0a940e8de0d10715n/a 
2022-07-04n/aexe 28920de5f1a16d20eb01e17bee84c2144eefa938bf0653e4165e3ff18b9244ccn/aModiLoader