URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: fantecheo.tk
Domain registrar:Freenom -
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-09-02 13:39:03 UTC
Total malware sites :26
Online malware sites :0 (0%)
Offline Malware sites :26 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-09-02 13:39:04 185.239.243.112ns1.20mb.nlNot listedAS212238 CDNEXT- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-09-28 18:52:08http://fantecheo.tk/bluetwozx.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-09-28 16:20:06http://fantecheo.tk/bluethreezx.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-09-28 16:19:03http://fantecheo.tk/mpomzx.exeOfflineexe Formbook ext abuse_ch
2021-09-23 11:07:02http://fantecheo.tk/chungzx.exeOfflineexe rat RemcosRAT ext abuse_ch
2021-09-22 12:12:04http://fantecheo.tk/princezx.exeOfflineAgentTesla ext exe abuse_ch
2021-09-20 15:51:05http://fantecheo.tk/obizx.exe/Offline32 AgentTesla ext exe zbetcheckin
2021-09-20 13:51:03http://fantecheo.tk/hussanzx.exeOfflineexe Loki ext abuse_ch
2021-09-14 15:12:04http://fantecheo.tk/angelzx.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-14 13:45:05http://fantecheo.tk/wealthzx.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-14 13:41:04http://fantecheo.tk/bluestwozx.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-09-08 11:12:03http://fantecheo.tk/yarozx.exeOfflineAgentTesla ext exe abuse_ch
2021-09-07 15:36:07http://fantecheo.tk/judecrypted.exeOffline zbetcheckin
2021-09-07 11:00:04http://fantecheo.tk/sureboizx.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-07 11:00:04http://fantecheo.tk/topboizx.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-07 10:01:04http://fantecheo.tk/famzlogszx.exeOfflineexe Formbook ext RedLineStealer ext abuse_ch
2021-09-07 10:01:04http://fantecheo.tk/odinakazx.exeOfflineexe Formbook ext abuse_ch
2021-09-07 09:10:04http://fantecheo.tk/usermasabikzx.exeOfflineAgentTesla ext exe abuse_ch
2021-09-03 19:10:03http://fantecheo.tk/obinnazx.exeOffline32 exe Formbook ext zbetcheckin
2021-09-03 15:51:03http://fantecheo.tk/ibefrankzx.exeOfflineexe Formbook ext Loki ext RedLineStealer ext abuse_ch
2021-09-02 17:15:04http://fantecheo.tk/obizx.exeOfflineAgentTesla ext James_inthe_box
2021-09-02 16:02:06http://fantecheo.tk/templeblessedzx.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-09-02 16:02:06http://fantecheo.tk/kdotzx.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-02 16:02:05http://fantecheo.tk/bankzx.exeOffline32 exe Formbook ext zbetcheckin
2021-09-02 13:40:05http://fantecheo.tk/blessedzx.exeOfflineexe Formbook ext rat RedLineStealer ext RemcosRAT ext abuse_ch
2021-09-02 13:39:04http://fantecheo.tk/catzx.exeOfflineexe NanoCore ext rat abuse_ch
2021-09-02 13:39:04http://fantecheo.tk/ashleyzx.exeOfflineexe Formbook ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-09-29 02:32:4016a3d787612d733a7a93adf135722e3e1164eeb8f8a9c5f800e872540331fe5fexeAgentTesla
2021-09-29 02:27:2016a3d787612d733a7a93adf135722e3e1164eeb8f8a9c5f800e872540331fe5fexeAgentTesla
2021-09-28 18:52:085a465b44b439b1b98f37bba3413c922c3f3673ab4ab009a424b11f317c7440d9exeSnakeKeylogger
2021-09-28 16:20:065a465b44b439b1b98f37bba3413c922c3f3673ab4ab009a424b11f317c7440d9exeSnakeKeylogger
2021-09-28 16:19:03e14df53adff2889344d4502133a00a389e06039715c26a7724ed3f046fc683a1exeFormbook
2021-09-28 08:47:33328416227365099ac5736edbc9060985cd39d185560060a270dc1138cffae8b1exeRemcosRAT
2021-09-28 08:46:529d19e1840a27a497b6aadaa162cecdba8d09998584b7f29bcd088159e07a4ab4exeAgentTesla
2021-09-28 04:14:5562ee412123d6e8832cebbf33d84d5695adc4fc2d66f0ec7222d9ccd5f21d4866exeFormbook
2021-09-28 02:36:50d71b625ed03ed8629f0cffa7c61cbd882f0c2541f84c9f17320b351d44ca0381exeRemcosRAT
2021-09-27 04:25:0183c49019ef9b9520235af445b484a3b3f275729cd92bb960a9264d6704190329exeFormbook
2021-09-27 02:48:341758a9b18032ce82f4e95249413ee1a8cbade1ef2cb773bc958502801f3af738exeFormbook
2021-09-26 23:57:20581490b0a14adee57f1862645ccf257d1db7720d31ba7a8b58756f1a11672223exeFormbook
2021-09-26 23:54:127e647d064a55731e15f05904b636037d2339e84ca425f53cf752004cd8797468exeFormbook
2021-09-24 04:17:3654507294252cb270a6b1944f838eb0428d87fbcfaf05e887126d5754af3ec1faexeFormbook
2021-09-24 03:46:3449d82a6b19fe35893b419696bace48db225826ccfa73da61ca22f59f7f045406exeFormbook
2021-09-23 12:34:02cb1d61ef49a44f6d4aa2087855bb5029006f86a6bdd24cbdf220a2181a27e30dexeRemcosRAT
2021-09-22 12:56:3806ba06eae5d4762725f06a0ef13c80b251c98098b59c10e56e0f584da48727ceexe RedLineStealer
2021-09-22 12:42:527162b4c9de1772aa721d26d185fd1b7e32a9de5c6ebfd86cab3ef0ed7561a837exeFormbook
2021-09-22 12:12:04dd31bfbcf0dad562e03dc771d93f0c1eeef6d924494aa078bcdc61458e047307exeAgentTesla
2021-09-22 11:57:135abfc9096634623fa543a3048b67a690e6c7ffe702367878be2b20f9e0ff6115exeAgentTesla
2021-09-22 11:56:185abfc9096634623fa543a3048b67a690e6c7ffe702367878be2b20f9e0ff6115exeAgentTesla
2021-09-22 11:42:0399b495e7c6df7f7bf887cd2d7f143e4103dfaf57990a0712bac7d33a2c6d6f0cexeFormbook
2021-09-22 08:22:16f03c40561ba64d0797bcf79bfefd015c8d9ca010f1bd67b3d27ffab584a9911eexeFormbook
2021-09-22 07:58:257dd08bfec3e9bdb2484ed9aa42e1cb4221ca190cd9f084d603fcce1ae65b7e5eexeAgentTesla
2021-09-22 07:48:017dd08bfec3e9bdb2484ed9aa42e1cb4221ca190cd9f084d603fcce1ae65b7e5eexeAgentTesla
2021-09-22 06:08:129ea8b6d99d00aae72eb7f70e949f431bb204e81e3e361189e6345b025cc0da19exe 
2021-09-20 15:51:054c5b527763b02858d21d030e497e197e6976b9a2c1bb8ac33cd45caee40e7b69exeAgentTesla
2021-09-20 13:51:0312021fc0d383f24539b8565bb873b36cd84e16ad126588336300a5039bf85093exeLoki
2021-09-20 08:33:024c5b527763b02858d21d030e497e197e6976b9a2c1bb8ac33cd45caee40e7b69exeAgentTesla
2021-09-17 04:44:24253015323c110bb4f685e1e6ee04c83d37eb8078788cbc99ff575a1f1bf65536exeAgentTesla
2021-09-16 14:08:0367eaed5b6f439145b53d3be14185d6b8aecfa6907ed7c899806fd77b11903da7exeLoki
2021-09-16 05:38:443a38b93f4537f3943931f7061649d6ad0c7c5686a47f3fb4df99dd10f9ddb063exeAgentTesla
2021-09-16 05:33:563a90232b1cc562fa333d9b401a6160d5de5b6be886768fae62bdae3d42ea42f6exe Formbook
2021-09-16 05:33:00f7bcb02beb4541d7ad9189b1dc02d80870b9724ba4bb4628fef89b81d546e2c4exe RedLineStealer
2021-09-14 15:12:044665a3a92f503024f8850fa2f3d3abeb2c5f12896870ddf52d3343fc3dd31e97exeAgentTesla
2021-09-14 15:09:5296a7e6d61c0ea250728f9a163e32860bc94ce15f5eedc27e893b1658b4c4534cexeAgentTesla
2021-09-14 13:41:049cd3ef368ba18453043dc339a7666db5636655c58168ec64b59230be8635d741exeSnakeKeylogger
2021-09-14 07:33:39ea672cbec72c276a08acfe16aea6790f7133eadcc56ecb514d90bd094f1089f9exeAgentTesla
2021-09-14 06:53:38a4c1a6ef8096c0daa6a02938b54ed1ccdac1252377a50820703e0c49a535e354exeFormbook
2021-09-14 04:58:445e9079e99088b9b63728165a8a32ee73f1cf7303143add330469c0b9c83c41acexe RedLineStealer
2021-09-14 04:03:391f4ffbd0d8cf6b36bfde2890ad718d5c9178115e0e7b1f303b561475091e06e7exeFormbook
2021-09-14 00:53:00056ab1d44bf55dc9ea7280a40a97575b1795252f08b57ceaae23b3262296aad7exeAgentTesla
2021-09-14 00:17:0343bd7d2cc52e77859f80c9311287688d3b111c53635c905dc44376789baaa255exe RedLineStealer
2021-09-13 05:47:0710f0d0b45866f7c5e7cddb7a4b9303ba1bedde9533e3fe69b7e855fca0d51b7aexe RedLineStealer
2021-09-13 05:47:03039dd9ed6cdc60c2606f035b8ad595a680dea8066e6fe24b09fc0bb3c405f275exeAgentTesla
2021-09-13 05:44:576b0efe02b6c3eb1fde1a2fc01c833c05ccc9b0c06f8aef9e626e43be22c30983exe AgentTesla
2021-09-13 04:28:2860f926a135f50af70e3f3230afb957d00630489a9e65a274235193a834a8236cexe RedLineStealer
2021-09-10 09:50:4108ab0772922343044ef4200f262c6a99d69276d5e15e8a55b190fc23a901d926exeFormbook
2021-09-08 11:12:03633087d0474ff7dd8a71be47edad0ae12af8ac9fff39721c41e1de31b0f41f1eexeAgentTesla
2021-09-08 09:40:18a56e9e3fc6d7b412b1e9cf5dff739358849779b3c80df268ade3d9da79bd5da5exeFormbook
2021-09-08 07:36:10c691bf3e578da1152a58daef475afc59d8ce21d180f793e8b10dcf08f92c433eexe AgentTesla
2021-09-08 06:26:358311754e15533c8e7ed449b8e7f48661ab1f4d7dbf6dffa264acc0c5f163d507exeAgentTesla
2021-09-08 03:20:2319d1e63f8c47b32beeef9bf383b925f6414187330a48837c182a5770f67914d2exeFormbook
2021-09-07 15:36:074af8190917a24909ef693b0ebb4766ac546821d2d719d61e420012e2492ab743exe 
2021-09-07 13:33:466f30e037d026084232720e749875dd5f6df185eb7033ddf99090d8aaf9079649exeAgentTesla
2021-09-07 12:10:1848298fd90d3f460765cda87b263f9e3510a67cb06836911c369b0a944b36a3a5exeAgentTesla
2021-09-07 11:00:049222c571a4574561dcbe4b2399d0a3073c27a09f49e88167bf7fedc929f3d52cexeAgentTesla
2021-09-07 10:01:0431a06c8d10ff489460190d4ff7a81d62be80348f6c47a99984a8defe3bb9e333exeFormbook
2021-09-07 10:01:041e6b5d62edf242fc7f24dbfa6294f9bf7e34ae7b1222a274b8c5b68ce79cc895exeFormbook
2021-09-07 04:59:18c0447d2efa01433e46c26f66e24b9d35fa30c19c13667dc4867c478b71bb95d5exeFormbook
2021-09-06 06:15:453c54c14e0046496faf7f519ac8c3085f8a7c7379c8040e47608f962534acddd0exeAgentTesla
2021-09-06 03:16:02b48c90b1bdb08c67811860a2ab609f74af0602db85b829586e5eec875fde9240exeAgentTesla
2021-09-03 19:23:00ccee4af77bd3023d2262104a85110b4e7587bd4341b8b1736ee7c64e542567aaexeAgentTesla
2021-09-03 19:10:034c5fd4ed6d7eda044f08d5369dd3ac130ae1e7d2f8415a77ebbc8010e2fe7c11exeFormbook
2021-09-03 15:51:030f83f86907255eadae1caec99da48bd60689e359e40938f12453dcb3093851adexeFormbook
2021-09-03 14:56:377ea35bc5cdf67eaabcce3fcd75f571a64af9c0b5d739f6fc466db66c79a4aaf5exeFormbook
2021-09-03 09:06:27c474dc9d81e08842f527487d032551b0d86e95a0f32fa2ebc7375fdb740c7e42exeFormbook
2021-09-03 06:14:233864b3a157ece572eabb6d56e50d577d0993fc7150bb5046e26e4fdc6bdf3c76exeFormbook
2021-09-03 06:08:056b1df878a0c21217fcbb0faa39b26af2316e2891e4c8ff3d93ab42623f5d07bdexeNanoCore
2021-09-03 04:23:0256ce41513fcb85017d9b3cfa32c31dc6f50bf0886242aefd78bbfd91e1aaa303exeAgentTesla
2021-09-03 02:45:220f69049e40ac6ad1a5df12b7e661ba9c1e120951c3f6b8489cf44c0273f5d533exeRemcosRAT
2021-09-02 17:15:0464a50e1b33ace0e3faf26026566648f4b04d90cbfbc197a27330c0d690e3be8cexeAgentTesla
2021-09-02 16:02:05282921e098c7e758b5f76b1633339f3a37da7f53e9f7fecfb9bca79b14971cfdexeAgentTesla
2021-09-02 16:02:052e55ace50ea83236c05cd45cbd083ba4e8f7eaabc705cefee16244acb00a4d20exeSnakeKeylogger
2021-09-02 16:02:047d6cb8f7f367c80349027eada7707f57f758aa3ba31fc4889f6f8bec5ff47cabexeFormbook
2021-09-02 13:40:042bc1027b5031ad9e7bbd530124d422c0033be0f46b06e275fa640b03eeb2730eexeRemcosRAT
2021-09-02 13:39:041dde25e326f8d6c6909b87573b3b1ea14f96836ad6eddb7fc92787488117e27dexeNanoCore
2021-09-02 13:39:042e607b4e0cec9f7569023816f39f2822e4363c9b67ca3bf8eb128932e42a0535exeFormbook