URLhaus Database

You are currently viewing the URLhaus database entry for http://tg8.cllgxx.com/hp8/g1/rtst1060.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2202658
URL: http://tg8.cllgxx.com/hp8/g1/rtst1060.exe
URL Status:Offline
Host: tg8.cllgxx.com
Date added:2022-05-19 15:40:10 UTC
Last online:2022-09-08 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-05-19 15:41:14 UTC to abuse{at}scalabledns[dot]com)
Takedown time:3 months, 21 days, 17 hours, 57 minutes Bad (down since 2022-09-08 09:38:20 UTC)
Tags:exe fabookie

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-09-08n/aexe 1de9f7d535aa49dfb821dd6e70e2f76b7d0e776703ab695d0794ac8234e5a5e7n/a Fabookie
2022-09-06n/aexe 9ef1bdaa0d90e82ab4df8ed8b4654031771bf16ff28a749cd521c38f0d5df97dn/a Fabookie
2022-09-05n/aexe dbd0a55572331325034100f4a2be2f197696bf725aff5ed75d0b6824cffb270bn/a Fabookie
2022-09-04n/aexe c8af29e89462dc2d69a3a4c8df6c93ab4c6bef8f0761b654ce790b9392d352dcn/a Fabookie
2022-09-03n/aexe a94ed9ea4a9dee25a03f074f230d960d45fefc4234abd51ab675e2b5560fd002n/a 
2022-09-02n/aexe da9b24cbbad1c4de974903190aea17dd6d0b4ffc3d7393fe1007a89fb27133f0n/a Fabookie
2022-09-01n/aexe 525dca252568e24de6415c6024ade167f5cab449c68ec02fad3b77324dd75847n/a Fabookie
2022-08-31n/aexe aaf6805ebfa0726ea764002fe84db5af08555c0aac29296ae873947a01e79de7n/a Fabookie
2022-08-30n/aexe 88aa279c4d25e10409613fa103be99049e07d45fb7018284c1579184e161d8dan/a Fabookie
2022-08-30n/aexe d574324fd83182b6272c7766462fbc2c9740932506cd6db621f9333ac279ea66n/a 
2022-08-29n/aexe cb6bde6fc864d87ceaa6d5c1a148fb555869b7f9100240f6caa7a928dc200918n/a Fabookie
2022-08-28n/aexe ce51e8812ab27d57ef026aea0eab8a48137064443ca387ccb386be686a68f2ebn/a Fabookie
2022-08-27n/aexe 22115c004cdc72256151f21a278b172b45cd960d6304c1651840a6af39b2c3d8n/a Fabookie
2022-08-24n/aexe 22cb62ada18eeea1c1e1c426db72c7d4acbe5c02580ecf5651677c2c30eebf54n/a Fabookie
2022-08-21n/aexe 0ff5188cad73c4d0f6bc7062718be01d6d7bfe5e7ccde150fea9840b6b3fff9en/a Fabookie
2022-08-15n/aexe 1dbac8628ae2802dd83df9f17fbdb30b006b5f9ec9514ea7c46a85d63f3622e1n/a Fabookie
2022-08-05n/aexe 65b60f110e546b4b8565bb8127a8f9e4a9ac17a05694b1130e8ba3c2034410a0n/a Fabookie
2022-08-02n/aexe 0d0d0d51c6f35619764b36cf3dfc79ae2388ce7469da933a9cbed0315b5b4e74n/aFabookie
2022-07-15n/aexe da8768b5bb6e2f698a411a6f5a06d043f5450ac0984c118ef77b6d6ceda76f6dn/a Fabookie
2022-07-14n/aexe 74c28843afb5a28f96b47a932dfea4a1ef107e3393780695d042690cb54ed4ban/a Fabookie
2022-07-09n/aexe dc926dedf14ebb0c3eccda321017dab2492518d594b39d5e4be7e23d0c9d4d2bn/a Fabookie
2022-06-28n/aexe 817db77386913dce36a50f9f2df3ade4818fac2c702f1519ffbf17868c0513e0n/a Fabookie
2022-06-20n/aexe 80999a7946862d965061e827fd65825feada692d814894e7fc670243872b8d00n/a 
2022-06-13n/aexe 4281c292a6c5682fa30621efef39cba200919d99a1f0fd9c5ece1da78fb6a10cn/aFabookie
2022-06-06n/aexe afac9a6c632600821ab32a169e8bedefc38fcd7f255038b863b5ec3513c72765n/a Fabookie
2022-05-30n/aexe 66a213f341ceb957c22ef1f21b7d53ecd7a834d661025d3ef22d40583610416dn/a Fabookie
2022-05-23n/aexe 3eb0bc854d79c745bb59a32dfa3e2a039385eb5e9474c8fbb6a5511e1ff38ba0n/a Fabookie
2022-05-19n/aexe 236d1b50e320c146feb68102c9fe5d7d85399b69c68b5a3c9349e760242cfbb4Virustotal results 28.57%Fabookie