URLhaus Database

You are currently viewing the URLhaus database entry for http://tg8.cllgxx.com/hp8/g1/rtst1057.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2202464
URL: http://tg8.cllgxx.com/hp8/g1/rtst1057.exe
URL Status:Offline
Host: tg8.cllgxx.com
Date added:2022-05-19 13:52:07 UTC
Last online:2022-09-08 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-05-19 13:53:06 UTC to abuse{at}scalabledns[dot]com)
Takedown time:3 months, 21 days, 19 hours, 44 minutes Bad (down since 2022-09-08 09:37:45 UTC)
Tags:exe fabookie

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-09-06n/aexe 296ce6db01d1cebeaf56dfe222fbe8c01b62f0f6c1ef288d114b40f5d9443368n/a Fabookie
2022-09-05n/aexe 45ba08981a2901a7a4a78a7eba8d14e1dd067a4e28891eae7082da3ca851d34en/a Fabookie
2022-09-04n/aexe 80a0866cde9aa7bfb1e3529a2309a31c15db04fd3c7a0990246073b45fc2294cn/a Fabookie
2022-09-02n/aexe c6a4330a6a6cbdda070c60364989695effcc772c3c16fb6d316741f6f326883cVirustotal results 36.62% Fabookie
2022-09-01n/aexe 89242302369d683f24903e1c4ec8717c419f81b6da9999e89527ce8e26b867den/a Fabookie
2022-08-31n/aexe 29965f9a8375741c9b9b68bc1e26c38c9102e6b29709fc6a2ba6f1eb6c21542cn/a Fabookie
2022-08-30n/aexe 233a746143341ba391a81e4f7980d4e32c25bfe493152c0e78092e27e228e14fn/a Fabookie
2022-08-29n/aexe 539d0cea0e94d5c96abdedcc71d6a98d27c3cfeaaaf9d6bbc74e551c5c344793n/a Fabookie
2022-08-28n/aexe f3919f46cff5458a03e603fa075b17e8891ddb394e0edc890dc6fb136ea6158en/a Fabookie
2022-08-27n/aexe 02977657eb7ae593bd948f0ff4100441e77568384effe5fa3ba40f615728b428n/a Fabookie
2022-08-24n/aexe 41c41a174fc30ec5dec348f469a5a8d329bba39d0a27b7dfa71cc451846b3675n/a Fabookie
2022-08-21n/aexe 54f4b7cfe8931003105239f5d7ca1a96097818bd61f1cc0e50aff5a34a9d53e4n/a Fabookie
2022-08-15n/aexe c05f56868d416007cd4943311e13f939a5dfdacee7eea63aca12ef574a777a7cn/a Fabookie
2022-08-02n/aexe ff9edde7afb95e7ae20b84efb64c142431bb5cfd0220739dbd4549a9757ff273n/a Fabookie
2022-07-26n/aexe 590cb2ff65e10499c9414c2086dcd9e8551be710b4d51b31b250de91144dbc26n/a Fabookie
2022-07-15n/aexe c147ca8f1016219cde5af033a793a309dd7341c9f9f9c66e0241bd978cf7c5f6n/a Fabookie
2022-07-14n/aexe e9a48f3d58857dbe85ef9028d9f82fb1b474fe06505a26b8a89931e335b8f147n/a Fabookie
2022-07-09n/aexe b03a446c358a18fc9224a3db40ab1da280e43e564105055b3dbb29b44f2b7fean/a Fabookie
2022-06-28n/aexe 4435367a4251c0daa890353c561b00d41f4ba04e822aa2476d3da411e100d884n/a Fabookie
2022-06-20n/aexe dc639719aa9ec41d1cf47f5c1fa2220c4049f87fb9b947e9f01a5eb865dcf1acn/a 
2022-06-13n/aexe 1be315b1921c60f89d4c2a7589117b5070721574ea4960fc1c6fde35091b0f47n/a Fabookie
2022-06-06n/aexe dc5e3892788271560b74a1960bcf2f08944ab803aa42ee10c1b41642652c1e50n/a Fabookie
2022-05-30n/aexe e41661a6555ffd7ff442d42c7a57125ae1dce5b0ba97b92eea079989192adc66n/a Fabookie
2022-05-23n/aexe d6bb3017c6766cb20f10b83dee14040f0005d5252de798c672517a7735e7f067n/a Fabookie
2022-05-19n/aexe d9728d099e7cf93e2fb85d9fadf0fa1083079238da9fd4d34da946ef1c761bf8Virustotal results 29.85%Fabookie