URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: download.suxiazai.com
Domain registrar:Alibaba -
Domain registration date:2011-05-13 09:39:51 UTC
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2024-10-02 05:51:08 UTC
Total malware sites :1
A record(s) observed :19

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-10-11 08:36:06 123.53.183.213Not listedAS4134 CHINANET-BACKBONE- CNyes
2025-10-11 08:36:04 42.48.109.112Not listedAS4837 CHINA169-Backbone- CNyes
2026-01-31 17:50:30 175.12.2.145Not listedAS151823 CT-Centralsouth-China-IIP- CNyes
2025-10-11 08:36:00 123.6.52.145hn.kd.ny.adslNot listedAS4837 CHINA169-Backbone- CNyes
2025-10-11 08:36:06 123.6.0.70hn.kd.ny.adslNot listedAS4837 CHINA169-Backbone- CNyes
2025-10-11 08:36:13 119.36.127.112Not listedAS4837 CHINA169-Backbone- CNyes
2025-10-11 08:36:06 113.219.164.219Not listedAS63838 CT-HuNan-Hengyang-IDC- CNyes
2025-10-11 08:36:08 111.6.225.189Not listedAS9808 CHINAMOBILE-CN- CNyes
2025-10-11 08:36:00 1.194.173.140194.1.broad.ha.dynamic.163data.com.cnNot listedAS4134 CHINANET-BACKBONE- CNyes
2025-10-11 08:36:06 123.6.180.115hn.kd.ny.adslNot listedAS4837 CHINA169-Backbone- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-10-02 05:51:14http://download.suxiazai.com/for_down/2013/new/...Onlineexe Anonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-10-02 05:51:140b45fa2a1937577f8f7ec7a3ce5b551b24f8667a2acc931ef8a9ab2431e4fde2exe