URLhaus Database

You are currently viewing the URLhaus database entry for http://samsung-tv.tk/mazx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1795041
URL: http://samsung-tv.tk/mazx.exe
URL Status:Offline
Host: samsung-tv.tk
Date added:2021-11-16 14:12:07 UTC
Last online:2021-11-23 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-11-22 14:35:03 UTC to abuse{at}serverion[dot]com)
Takedown time:7 days, 18 hours, 14 minutes Bad (down since 2021-11-24 08:27:41 UTC)
Tags:exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-22n/aexe e00778435ceed2c5626bf21e72a602478b6f4dccaedd38b27b57eb0e16b9b5b8n/a Loki
2021-11-20n/aexe dc2a0f6c36043029df5292edc1398b39171a483ce512be5fbc5848cff84b6a1fn/aLoki
2021-11-17n/aexe 56f5ee46db740dea60147de78f53e5e9ff12c4c5cb22b5521cecfe10a94453a6n/aLoki
2021-11-16n/aexe 27a4f353a9a69e6ba36eb461e8eaa25c4bf68f05793b77675bb999e30b490a35n/aLoki
2021-11-16n/aexe ebec47078803f8b6e5668902184c54d84b6da89634d295e5faf5a14e0331c5edVirustotal results 43.94%Loki