URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: xt.lykj988.com
Domain registrar:Xin Net -
Domain registration date:2017-03-10 09:58:13 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-24 18:52:05 UTC
Total malware sites :1
A record(s) observed :504

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-30 23:12:48 211.93.211.158Not listedAS4837 CHINA169-Backbone- CNyes
2025-04-30 23:12:48 221.204.209.225225.209.204.221.adsl-pool.sx.cnNot listedAS4837 CHINA169-Backbone- CNyes
2025-09-21 05:48:18 42.56.64.131Not listedAS4837 CHINA169-Backbone- CNyes
2025-04-30 23:12:48 1.56.98.184Not listedAS4837 CHINA169-Backbone- CNyes
2025-11-19 23:56:14 1.62.64.79Not listedAS4837 CHINA169-Backbone- CNyes
2025-09-21 05:48:18 116.153.4.244Not listedAS4837 CHINA169-Backbone- CNyes
2025-04-30 23:12:48 116.163.31.218Not listedAS4837 CHINA169-Backbone- CNyes
2025-08-28 12:04:10 124.166.238.8787.238.166.124.adsl-pool.sx.cnNot listedAS4837 CHINA169-Backbone- CNyes
2025-08-17 06:11:37 211.95.142.138Not listedAS135061 UNICOM-ShenZhen-IDC- CNyes
2025-10-03 20:21:16 221.204.15.5151.15.204.221.adsl-pool.sx.cnNot listedAS4837 CHINA169-Backbone- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-24 18:52:35http://xt.lykj988.com/down/fileren.exeOffline32 exe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-03-30 13:07:205ad186e49782966c081e55edeccebc2b6fe4407ec55dfab90bf0d41ec63c35d5exe  
2024-03-03 07:14:17026a70d210578592e012eaa6755c47a6df00dcfdcba1f1b768163a47e42df2f7exe  
2024-01-12 05:22:02893596cb4f04adf5e94c769732c1d0b4244699272852d48bfb74a07f2bf30eacexe  
2023-07-28 14:25:448715835c8f32820015226dd4033e72fb7bd1130043c0ffbc83c60d9d2d8a92d0exe  
2023-07-26 06:48:109e219ecb6c4f90246faa2ea553adcb83e3f818fc4829cdeb3db2d821102156f4exe  
2023-07-04 01:26:435b917b8c66ccb8dd08614ebe8757ea8bcc44ff70038ca9a8ff8e82672dfde0d7exe  
2023-05-22 06:46:41db844129319ef93c24fa2734f8fe2b4587141a16bd31df8ebd8efa55aecfa3a8exe  
2023-05-10 14:03:38ef670bc8cac43a43eda59c1c11b0e278cc4110732cabbefe003fac2dbc0dfac7exe  
2023-05-09 15:47:1466b2444a7de29770798bd60f211f079e4879a02d08bbbb440c723a38662ec62bexe  
2023-05-06 00:06:40eba6d51525ac86b4ec126573f1f04ec452458f51eb015ef21eec9e85a7c2fcf3exe  
2023-04-15 04:16:15ecdcfe3eaa03f6562e992b2e217e0917d0935988c6febfa7fcab0a99ff257efaexe  
2023-04-04 09:05:57ddd25c7b379f640afe5f0639d4ae72cfa00b4b0c5c558bef4261d68ee4fbfab1exe  
2023-04-02 00:22:29b3d0ae8383285f0ab7fd5cee2d13237e1e88d1eeeb7f813065d285fb3647117aexe  
2023-03-28 09:50:469ea034c76ab9309e8cd50e4ed7b8cad0d9e038f43f5af4527fd5295cd2b3570aexe  
2023-03-16 20:51:592f753b55f90b49d81a7bfd712b5053cc57231a362f0e722cd95a548f3a0631daexe  
2023-03-02 22:56:25e06ab4abb81d1a4cad5186b9f8ecbe2bea5670b49df10b150994ad4a3db326aeexe 
2023-01-27 10:50:165882c3fc7e730d71674488934cb3503fe04ffcf76d19ae424227c23cc3357781exe 
2023-01-27 10:23:00a77a1063bd5cbb16a39956c9fc552e1db250ce3996bbed24df95c2b4d2a5758aexe 
2023-01-27 09:28:099b42d0884596440133502cd6222d9ddb0b916e295d4ca7932b4b79d5a9a569ecexe  
2022-12-11 13:18:48e1e065e62daf667de299dfee115f469ce4c7c157cc007b90573164e175a0e7c6exe  
2022-12-11 08:21:0476d21542df0591f1eed3b47783711a1fa3bcdf56a3f436348b9cbb0a3ef43738exe  
2022-11-04 04:46:22d8bec7fd63baf274ef18bf9ea596b52bf3cbec473f2c09906c1cfa0d72ef99d1exe  
2022-10-31 10:49:293e2703dc1b0f8d18c92f2ba85a99ffd5231362f7022646e84cb4d522b616884dexe  
2022-09-07 07:14:3844fd60c56fd9a3a39289d6993a07053bf98509dce350d88f4e9d55f5a35b2657exe  
2022-09-05 15:05:4944179be58186ff36fa295ada5a5e930779fc2a6e6d2ae4468d34c94e5da5e408exe  
2022-08-24 15:52:2145a470f700aff0820f891117c0529370e363ee8c9cb01f0c8d2493546731ccddexe  
2022-08-23 10:24:0766c290d07809a09c97e38f74ff5521bf4db9929782aef1dead6f28d315aa3539exe  
2022-08-23 08:29:20755ea0f787d95a87f600119c4d4a16b3a61863ed729dd6c19fe967726630ca56exe  
2022-08-21 11:39:470447661ba8b10e4dc98e46b5722f9cb47b1710ca547c1c5cbc049675efbfe392exe  
2022-08-19 01:34:51cf326c4e9415383e7bf4e592960fba512f1bde0bd5eb42bf98e847fcd0b540c7exe  
2022-08-17 20:01:38f132c035a6a83c9d18fda4da584006a228c49fcf62c6f71dea43fbed5ce9a4ffexe  
2022-08-17 11:27:087806f167ddaa59f566abc7d04599eaef218e44e1c197bfb173e579a0775ab824exe  
2022-08-13 13:14:24ed2e1a3b9087db2cc2090f81f1ac1205af160b3e88a47fe84c4a8f53a3f47f8fexe  
2022-08-12 13:30:523b2d5b6d4675f7a5251c0457555b3834fb1db9958b2c6b6852e36bf97d0d1bbeexe  
2022-08-11 11:46:420abe8c9eca6f06c999ab0de32072b1e523d71e26da5287d3ccfad8c7e0eb6987exe  
2022-07-26 19:31:08f047d12574d6c3905fed226543a8fdd3b01e79ae103d797f3ffb19ba2f3b119fexe  
2022-07-20 21:14:425e1faba8fcf7421353c6c8c10c30889d9af5b0e0e820ec147f063c01cd4dd916exe  
2022-07-11 06:57:174534ac13d1fe8bea4e9626fe537362ed327a6dd3b5d81e9a078b6659c3e87bd7exe  
2022-07-09 10:41:13a63d599b0e83ae5d38fe2e8840ba99450c4cdba1a2d91e699affb00ae8d774cbexe  
2022-05-27 08:55:25c648f7553db4924e535bfc6fe4d1ab03475c388d0a17c99ee8f44d53703f6c31exe  
2022-05-22 08:28:56ecf4f53012f57560b1811ec2f2a52455efc530b1702bde5f694116f524f9ddcaexe  
2022-03-05 10:22:030732f8cf1bc31a0482ae85d943dae57d6b12e2cf99403d6869e102187b5a8aa7exe  
2022-02-22 00:42:409db98546e3a27afe51bfceda1f1b95cc54affd9958c95fac6cbda7c789c88a09exe  
2022-01-29 15:47:30f1c520d2a4c8f0b7663176ae2976f6e20430f765ddaad212191d336ab5e48426exe  
2022-01-24 19:11:53d94901376072d9c338260523b55de650cba7753e067e35ef8d3a343426c35ba0exe