URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: wooq.link
Domain registrar:Namecheap -
Domain registration date:2022-02-11 12:09:25 UTC
Abuse complaint sent to registrar: Yes (2022-02-12 19:56:01 UTC to abuse{at}namecheap[dot]com)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-02-12 19:53:04 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-02-12 21:42:08 213.226.114.217Not listedAS214822 MTFINANCE-AS- RUno
2022-02-12 19:53:34 45.11.26.87Not listedAS214822 MTFINANCE-AS- RUno
2022-02-12 20:48:41 45.143.137.181bserv17.example.comNot listedAS47196 Garant-Park-Internet- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-12 19:53:34http://wooq.link/CERT.exeOfflineArkeiStealer ext exe benkow_

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-02-13 22:20:3954c3bb30df4081c466e00420885c6953491f09d193d8397a31908dc59cdedc8eexe ArkeiStealer
2022-02-13 21:21:07f74acb705d02c071c3bdb02f60a86cd554d8800251c98f1485c8f80a5be5e115exe ArkeiStealer
2022-02-13 20:15:23a268cefb29655149369b231946733f1e2409a940c0ac56b10201afd368d949e8exe ArkeiStealer
2022-02-13 19:19:01c66486ee55d4221218b24f4c33d9f857aaa23d2a2ca6b4d8bf37cabba1cd9280exe ArkeiStealer
2022-02-13 17:36:274651ad55200989d20043dd2de97454987645c4e7c3c0642e935734b565bc95b5exe ArkeiStealer
2022-02-13 17:03:1545fff1aac281bbe83e69c09c3f66efe3c38e16433a822bbd2fb16daf13ff8fabexe ArkeiStealer
2022-02-13 14:34:39eff61bbcc4fb5dc8e7cdf916bd0341e05ecdceea59893fd3f048b9ff97a642e7exe ArkeiStealer
2022-02-13 12:53:55303d14829da3ae885d93efcd36f71c8a2fc3428213591a242776906bac53c778exe ArkeiStealer
2022-02-13 11:07:12a3b12e280259b7ed16cf405f54ce0dfc7331165893caafce1994ff5908366439exe ArkeiStealer
2022-02-13 10:46:1476a4f5e2d39039f85fb14681dd6a64785973407a06799a48b3ec65bd9bff7515exe ArkeiStealer
2022-02-13 09:47:138ab7cd42f6b90e250f69f4c96efb32d36135bb1479acfec28344a4910a3a329bexeArkeiStealer
2022-02-13 07:01:5361b00eaf8df198caa3cbc58ca74b748538c88f55cbe7c7a702a7d4fb29879e9bexeArkeiStealer
2022-02-13 05:52:4031ad34787916e6d563c01153058489ad060f3d6f445a2ecbe7e5f6e031d677f7exe ArkeiStealer
2022-02-13 03:51:5910769a2c8c8c7bfcce384961db461a731fb650a18052facbdb979ed788fce983exe ArkeiStealer
2022-02-13 01:26:40779a8e7fe0ff8cb2036ec126030a2a3ea4c354f31a16b05b4fa55c8cc211ab81exe ArkeiStealer
2022-02-13 00:25:07969056d8fd647fa92a67a740c4bd4b76cad0e51ec670b281e04acc590a1ba4fdexeArkeiStealer
2022-02-12 22:35:26b0fc7a2a5bc24543f56dc08e65950baec2b3d28bd900309321b912bb09a37e90exeArkeiStealer
2022-02-12 20:48:363133fa158ceed84616d846bee91ef670425cc5568b5a96c34b48a9c8bcfe52eaexeArkeiStealer