URLhaus Database

You are currently viewing the URLhaus database entry for http://fantecheo.tk/famzlogszx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1599299
URL: http://fantecheo.tk/famzlogszx.exe
URL Status:Offline
Host: fantecheo.tk
Date added:2021-09-07 10:01:04 UTC
Last online:2021-10-01 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-09-07 10:02:04 UTC to abuse{at}serverion[dot]com)
Takedown time:23 days, 21 hours, 1 minutes Bad (down since 2021-10-01 07:03:48 UTC)
Tags:exe Formbook link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-28n/aexe 62ee412123d6e8832cebbf33d84d5695adc4fc2d66f0ec7222d9ccd5f21d4866n/aFormbook
2021-09-27n/aexe 83c49019ef9b9520235af445b484a3b3f275729cd92bb960a9264d6704190329Virustotal results 10.45%Formbook
2021-09-26n/aexe 7e647d064a55731e15f05904b636037d2339e84ca425f53cf752004cd8797468n/aFormbook
2021-09-24n/aexe 54507294252cb270a6b1944f838eb0428d87fbcfaf05e887126d5754af3ec1faVirustotal results 24.62%Formbook
2021-09-22n/aexe 06ba06eae5d4762725f06a0ef13c80b251c98098b59c10e56e0f584da48727cen/a RedLineStealer
2021-09-22n/aexe f03c40561ba64d0797bcf79bfefd015c8d9ca010f1bd67b3d27ffab584a9911en/aFormbook
2021-09-16n/aexe 3a90232b1cc562fa333d9b401a6160d5de5b6be886768fae62bdae3d42ea42f6n/a Formbook
2021-09-14n/aexe a4c1a6ef8096c0daa6a02938b54ed1ccdac1252377a50820703e0c49a535e354Virustotal results 34.33%Formbook
2021-09-13n/aexe 10f0d0b45866f7c5e7cddb7a4b9303ba1bedde9533e3fe69b7e855fca0d51b7an/a RedLineStealer
2021-09-10n/aexe 08ab0772922343044ef4200f262c6a99d69276d5e15e8a55b190fc23a901d926n/aFormbook
2021-09-07n/aexe 1e6b5d62edf242fc7f24dbfa6294f9bf7e34ae7b1222a274b8c5b68ce79cc895n/aFormbook