URLhaus Database

You are currently viewing the URLhaus database entry for http://lg-tv.tk/bankzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1583603
URL: http://lg-tv.tk/bankzx.exe
URL Status:Offline
Host: lg-tv.tk
Date added:2021-09-01 14:48:11 UTC
Last online:2021-10-18 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-10-18 08:41:35 UTC to abuse{at}serverion[dot]com)
Takedown time:1 month, 16 days, 21 hours, 45 minutes Bad (down since 2021-10-18 13:57:25 UTC)
Tags:exe Formbook link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-01n/aexe 5be742e9644f86ef1d407e5b3e85dff6211561e6dbf9c9fc85b0c5289b899979n/a RedLineStealer
2021-09-28n/aexe c7ea020c54d4ce9a629d57feb15e38fac8457b14221386111ef022735e375d13n/aFormbook
2021-09-27n/aexe 043b45f9d94820186d7324c5f6e0fd7661de15ad29104fd43294e2f3839efa06n/aFormbook
2021-09-26n/aexe 92c90d735148f7fd056e2d53bf44239f3fdab6b029e78d3ed6077d9c7f40aef2n/aFormbook
2021-09-24n/aexe 2ac830fd4c5c4c3522b5cb9983edc13f2580b932875bc9daeb02633b8829fb3bn/aFormbook
2021-09-22n/aexe 7024147e75938acd54b804df172c63b57c794e1980632c5f8190ae1e9d0da82an/aFormbook
2021-09-22n/aexe 4c5887639c1dfcc0349690d98e9c8034029a6fa2f2e6bdbba96371bf23ce3301n/aFormbook
2021-09-16n/aexe fa87c1477f566e729a6dae6517ec20964005f77b063345201eee6bf6b9e1e8caVirustotal results 25.00% Formbook
2021-09-14n/aexe 539e70f04353ff7e975aa5917fd9ceb9a1638d006fa27d619bad123264c90188Virustotal results 25.00%Formbook
2021-09-13n/aexe 23e479f761843a3c742ceb5437e43db1468915212c1ba3931f68389bd7672fefVirustotal results 35.82% RedLineStealer
2021-09-10n/aexe 4e574ffdb3aba06f7e3aaebd9293eaf171289304e7fdd8ecfbf8275a149eba1dn/aFormbook
2021-09-08n/aexe 12ebeef2321e3a83ede052c45399620ea7227ffaf55e5219895b30df19f97177Virustotal results 25.00%Formbook
2021-09-07n/aexe 938bf878a5a507a424718a7302d55d36c1ae58fcf571c5da0a6a4a136ee0f736n/aFormbook
2021-09-01n/aexe c44b1ee1b7cd66260ed15839ebaa8fc97be83e5b61007a14384f86e14ecf4a20Virustotal results 34.78%Formbook