URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: faog.org.hk
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-04-13 18:42:05 UTC
Total malware sites :11
Online malware sites :0 (0%)
Offline Malware sites :11 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 08:45:15 203.186.53.181203186053181.static.ctinets.comNot listedAS9269 HKBN-AS-AP- HKyes
2020-04-13 18:42:11 103.13.50.72ns72.hostingspeed.netNot listedAS131224 SGC-CAL-AS- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-04-13 22:28:26http://faog.org.hk/scanner/0dh7dhnx76s.exeOffline JayTHL
2020-04-13 22:27:54http://faog.org.hk/scanner/540dh7dhnx76s.exeOffline JayTHL
2020-04-13 22:27:22http://faog.org.hk/scanner/730dh7dhnx76s.exeOffline JayTHL
2020-04-13 22:26:49http://faog.org.hk/scanner/4030dh7dhnx76s.exeOffline JayTHL
2020-04-13 22:26:16http://faog.org.hk/scanner/4610dh7dhnx76s.exeOffline JayTHL
2020-04-13 22:25:44http://faog.org.hk/scanner/4910dh7dhnx76s.exeOffline JayTHL
2020-04-13 22:25:12http://faog.org.hk/scanner/3534345.exeOffline JayTHL
2020-04-13 22:24:40http://faog.org.hk/scanner/4204345.exeOffline JayTHL
2020-04-13 22:24:07http://faog.org.hk/scanner/7924345.exeOffline JayTHL
2020-04-13 22:23:35http://faog.org.hk/scanner/overwatch.phpOfflineTrickbot ext JayTHL
2020-04-13 18:42:11https://faog.org.hk/scanner/overwatch.phpOfflineexe Trickbot ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-04-13 22:23:351210a765675989844774f13e1326ac1969174feb6c42870eb9053ed06448f315exe TrickBot
2020-04-13 22:11:2534ae344b732156af5b8b90e910567dda1e1df99b8d1e89b9780360ac4a30bdc6exe TrickBot
2020-04-13 21:57:33b9616a042c7e27ce189111fe064be6ce31895b2a813dc6f57f5060e2533f61e3exe TrickBot
2020-04-13 21:35:29207ccb918cbb3ef4b6190f58b5aed67f9e45ca25c550cdb0abe8f8bb86d6d1aaexe  
2020-04-13 21:29:0534e75d0bbd3e7eddff273680dd070f2f28af4797be1ba13bd46fb04ddd3202e3exe  
2020-04-13 21:18:54c50aa9b8c9d09a35fb1501d693b137e8e39dad33ddac4af847b263234d6570eaexe TrickBot
2020-04-13 21:02:3455e63894ec39083d618099a9763b9f57c4adc9a00c590db9ce1d285731effd02exe  
2020-04-13 20:34:223cd6109fb55980d399ff9a35e8d748e2ff0e0ec23281833edfd9aa344ff3bb94exe TrickBot
2020-04-13 20:09:14271f94e3ed1e305ebe0a16b8695f471994304baee6f6c6f8812b7e0224063590exe TrickBot
2020-04-13 19:52:5303dd6fef9abc5f9de90cf6f6465685a322bfe52d2958c654fe439848f94cc066exe TrickBot
2020-04-13 19:35:45416434b83c347aff0a0ac62dcf8bb9b06888e2e31c71225a67759345603efaa0exe  
2020-04-13 19:21:513ed94a494797036bc420f3a4c3e253f8d755de71790f293d72f90ff214577e1aexe TrickBot
2020-04-13 19:03:21f5cccfb937c0b8deebbf6cfc93ab5fe5c0a320b5a029e67839bb63d914eee490exe TrickBot
2020-04-13 18:48:0358e9ee2523316a5a603f335c2fcd9f15ddf7075f8ead4fa1dbf4a7194d1609c3exe  
2020-04-13 18:42:10c5f4687f3077bca194d64f56b1e8e224825e701cf400848bde9b231b8b98c4acexe TrickBot