URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: dl.installcdn-aws.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-03-14 14:26:05 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-02-18 16:15:27 91.195.240.94Not listedAS47846 SEDO-AS- DEno
2021-03-14 14:26:09 195.181.169.92unn-169-181-195-92.datapacket.comNot listedAS60068 CDN77- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-03-14 14:26:09http://dl.installcdn-aws.com/Newtroop225.exeOfflineArkeiStealer ext exe vxvault

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-10-14 19:45:32b40d8ba1a4d9c5d3a4a996284b155f0ee2ac024a9cc4d59d619627ce37e2a3ceexe ArkeiStealer
2021-03-18 21:05:586494bacf6dba73268bc68c1078306b5e2665bee110f93e9235a6672e0ef434e1exe ArkeiStealer
2021-03-18 02:14:59fdf22353fea7e38c33d70e50c3479abf5ccf97c53bc82d6657a27fca2e9d5c61exe ArkeiStealer
2021-03-18 01:58:42680a76ef453a4b24e67280280dedff7d65b9b140f9c2144a81d58e7faef57ee3exe ArkeiStealer
2021-03-18 01:25:44fc789af110fa50d3b77325206beb8de177dde7e51f7d3988328ad161ef7cb429exe ArkeiStealer
2021-03-18 00:32:275b7de448ca7c7b41cdc14216189406a338a780cff51e2ea4913cd443cfadbd50exe ArkeiStealer
2021-03-17 22:43:1625fddde3cfe24c4914da9be74bc5f4de3ecccb029f1a57232d88f86199ab2e9fexe ArkeiStealer
2021-03-17 22:08:35e9236502d303a733b1daf06ec731e09a67becdcf9d7178d10e7f5d6def2ace93exeArkeiStealer
2021-03-17 21:31:36ec25c440beba05259ba690961dc8b879998354502ee363bacc1294633e9a0d6dexe ArkeiStealer
2021-03-17 19:55:06ce62e209630ff3a9bf669206e2a31b7a9168b9cca5402c48994c44b262e125acexe ArkeiStealer
2021-03-17 19:25:22b3bb943e9ede18411a9102d938b30a92b83f261e95c9bc060f1a0b9febfa5db6exe ArkeiStealer
2021-03-17 18:40:414f42a3f5ab0feccba70fb3637052bb95359d2152f1b73d787b25ba0f75cec13aexeArkeiStealer
2021-03-17 17:26:49fb83a7a2b4a83da71dc38706c449ee2d0e7f98964cdb719d33a4da866dca6790exe ArkeiStealer
2021-03-15 04:50:11e2eb348305663d576a7cf6f8acb1962adc8dd4884dc991b3d9c3cbbff1ef86d2exe ArkeiStealer
2021-03-14 14:26:087a13f0c897638d4741e7936fa15e0e46c9a328406a43146fe4c2bf786b542087exeArkeiStealer