URLhaus Database

You are currently viewing the URLhaus database entry for http://peak-tv.tk/lewiszx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1970269
URL: http://peak-tv.tk/lewiszx.exe
URL Status:Offline
Host: peak-tv.tk
Date added:2022-01-12 09:18:04 UTC
Last online:2022-02-23 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-01-12 09:19:18 UTC to abuse{at}serverion[dot]com)
Takedown time:1 month, 11 days, 22 hours, 25 minutes Bad (down since 2022-02-23 07:44:19 UTC)
Tags:exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-14n/aexe 995d3216e181cbd9126c3313cb7972da7ea6584d394f75afbd11aab6acfc0ccdn/a 
2022-01-14n/aexe 8ce10c347ffa1ef3d7dec6754b794c215b5096bb6185342e949dd887fc51aefbn/a 
2022-01-13n/aexe 9fae8a9fba8705091a5c09a9d05996f0136d276f2178589948a37253ad27f6e7n/aFormbook
2022-01-12n/aexe bfc65712da2b1fc4312aabe63f6e4921167f2860823a71db18ebc9b416c94c87n/a 
2022-01-12n/aexe 0c510fde61332c2e2aacbfa4d1b7b7c9163e135ff116b7a99191a076728566bfVirustotal results 25.00%Formbook