URLhaus Database

You are currently viewing the URLhaus database entry for https://drive.google.com/uc?export=download&id=1oXPqeUTyREBy186eXX4ZeOfyZ0RjOcSP which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2726921
URL: https://drive.google.com/uc?export=download&id=1oXPqeUTyREBy186eXX4ZeOfyZ0RjOcSP
URL Status:flame Online (spreading malware for 2 years, 7 months, 9 days, 3 hours, 16 minutes)
Host: drive.google.com
Date added:2023-11-01 07:22:07 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-05-23 03:10:17 UTC to network-abuse{at}google[dot]com)
Tags:AgentTesla link encrypted GuLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-12-19vRMlkoxskjjZY121.binunknown 8d77428b4e58e8da9aa0bb45ab66148860729bcbc6b85463310b279c6aecd4f5n/a 
2023-12-01vRMlkoxskjjZY121.binunknown de8197fb1f0572fa034b4c2c067891243dcee8197b167450d733d1a39a603323n/a 
2023-11-02vRMlkoxskjjZY121.binunknown 6a46341a1dee67c28427cc186bc09cf4b12d9af0964d55f0b3be718df1e9e7c1n/a 
2023-11-01vRMlkoxskjjZY121.binunknown be94c634cba162511af652b44b5226a3b22524e36794a549e310f74b9c9c164bn/a