URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ffvgdsv.ug
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-05-27 17:36:28 UTC
Total malware sites :10
Online malware sites :0 (0%)
Offline Malware sites :10 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-05-27 17:36:30 217.8.117.45Not listedAS49505 SELECTEL- TMno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-06-03 11:28:08http://ffvgdsv.ug/ds2.exeOfflineexe abuse_ch
2020-05-31 07:27:04http://ffvgdsv.ug/nw.exeOfflineexe NetWire ext abuse_ch
2020-05-31 00:56:36http://ffvgdsv.ug/az2.exeOfflineexe RaccoonStealer ext p5yb34m
2020-05-28 14:44:09http://ffvgdsv.ug/rac_kHwXo175.binOfflineencrypted GuLoader ext RaccoonStealer ext abuse_ch
2020-05-28 14:02:24http://ffvgdsv.ug/nw_bbcHQIBpPe130.binOfflineencrypted GuLoader ext abuse_ch
2020-05-28 14:02:18http://ffvgdsv.ug/ac.exeOfflineAsyncRAT ext exe abuse_ch
2020-05-28 14:02:05http://ffvgdsv.ug/rac1.exeOfflineexe GuLoader ext RaccoonStealer ext abuse_ch
2020-05-28 13:44:23http://ffvgdsv.ug/a_uXEGSDNimE3.binOfflineencrypted GuLoader ext abuse_ch
2020-05-28 13:30:07http://ffvgdsv.ug/rac2.exeOfflineexe RaccoonStealer ext zbetcheckin
2020-05-27 17:36:30http://ffvgdsv.ug/o_eOwXT252.binOfflineencrypted GuLoader ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-06-03 11:28:08c70f085a5bb6b5589088374114bbd7a7e097ad8dce5343aec499cd7bc070f061exe 
2020-06-01 11:32:240ca80f61a8161466cf3d95834691dc42ec0a08caa62b53f78b93d98810ff6115exeNetWire
2020-06-01 11:31:3809850a670b9c2767782447b251d282420589586820887870dd872a8914d90b93exe RaccoonStealer
2020-06-01 11:31:3557cf03e2faec0f830fea2535bd1d5f6ee6afdb992cda46a8689bd30dc343f57fexe RaccoonStealer
2020-06-01 11:31:33fa667b8bf441a650c170af2b2241e1fa08b7d16af2347bbef0a1d59e847a333dexe AsyncRAT
2020-05-31 22:26:1905404bf1466a99647a2f82fa5323d023a5c5e4c9081d34578306299e65d25402exe AsyncRAT
2020-05-31 22:26:18474233cdd3d96bddb9f6733b5345cd411ed3bc141f462d77849f1294900b0aacexeNetWire
2020-05-31 07:27:045d3ee1566129397c9b6ccf01fa3826083cbbdbde6de623a7a243bb81420a979cexeNetWire
2020-05-31 00:56:3622d7588ffa64a9d151feead8109ca212bcb28c59e8061483345fcb6625d1dfabexeRaccoonStealer
2020-05-30 19:17:27c919ec30d031b31334b11757f8e4ced12904ccfa6c5f6d602007102f7d6b8917exeRaccoonStealer
2020-05-30 19:17:2773da2b6dfc9ad615ac0974240e9baa6a0e1cc8414a82fae3443cd1b57cdce9aaexeGuLoader
2020-05-30 19:17:27b5a30ad37aed3f9118c8b35c746e64b13bc4d82e03a9a93dc5db166c022df463exeAsyncRAT
2020-05-29 18:34:34dd830efe44125a68c07907034f09ff8a40d4d29c54b4ebd89320425af9c5c90cexe AsyncRAT
2020-05-28 15:52:37853bedab93069db2c2a507a8c0166bfd8af03223d8d710b7421a17724c603467exeAsyncRAT
2020-05-28 14:44:09894ab60caeab97aaa0fe55ae2ed4bff9dabf19015dfec2c23e98a39ead473822unknown  
2020-05-28 14:02:24725dbebf86f5da66bb808bf3d7e82de6f30497df7c3bfb9a4a48226db0834b86unknown  
2020-05-28 14:02:1863795107b610200af5c2e29112e6e945ee4dfa962116baf6ed9955a4ed82717bexeAsyncRAT
2020-05-28 14:02:03b894523c9beb2e22e87d705de2f9f48a907f82a2cd9c55c3dc0c1ca186fcef20exeRaccoonStealer
2020-05-28 13:44:23cd926228917ce113ac7ecd69a9dc3239902124e79c3dbf906db6692f4706497bunknown  
2020-05-28 13:30:07cfac1924e9a4552a65e67133724124cbabb81ad187e04576f6422c805b73771aexe RaccoonStealer
2020-05-27 17:36:30902ec74258921447473402c3150c6416d1718ae15d1e2554399bb8c662f0a68funknown