URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: xz888.oss-cn-hangzhou.aliyuncs.com
Domain registrar:Alibaba -
Domain registration date:2012-04-01 07:23:40 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-12-24 01:53:08 UTC
Total malware sites :1
A record(s) observed :72

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-04-20 22:59:42 118.31.219.207Not listedAS37963 ALIBABA-CN-NET- CNyes
2022-01-26 17:22:46 118.31.219.222Not listedAS37963 ALIBABA-CN-NET- CNno
2022-01-15 05:58:33 118.31.219.219Not listedAS37963 ALIBABA-CN-NET- CNno
2023-03-19 20:09:10 118.31.219.206Not listedAS37963 ALIBABA-CN-NET- CNno
2022-08-26 12:03:05 118.31.219.195Not listedAS37963 ALIBABA-CN-NET- CNno
2022-07-02 23:29:43 118.31.219.202Not listedAS37963 ALIBABA-CN-NET- CNno
2022-11-30 13:37:44 118.31.219.225Not listedAS37963 ALIBABA-CN-NET- CNno
2023-01-02 09:21:22 118.31.219.198Not listedAS37963 ALIBABA-CN-NET- CNno
2022-09-26 01:25:31 118.31.219.218Not listedAS37963 ALIBABA-CN-NET- CNno
2023-01-02 13:52:40 118.31.219.214Not listedAS37963 ALIBABA-CN-NET- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-12-24 01:53:12https://xz888.oss-cn-hangzhou.aliyuncs.com/5w/%...Offline32 exe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-10-11 17:56:3006f1bec5c4528c259bd609157789f5d97658b77dfc58068d2a484acef570faa7exe  
2023-10-01 07:45:47b9c4ae54ca7d315a7998cc509205ab6a304aa721fab97d3628ba1a6782d83f0dexe  
2023-08-31 20:58:47dea5a97aa3421416824c19f89714a80de34cef8f312a9b81ae7ddc4879adc3c1exe  
2023-08-15 11:14:56a99070dbbd077b5cd66eff790808f52e26cd881006b6b9cfe5fdb6988f034ca6exe  
2023-05-16 23:49:1705b5d3cbab10a4e75a43a3c9835966f3c937faa388fba383a866e9ba4e095418exe  
2023-05-05 03:35:09a6876fe9efa8a8cfd87c09e52bee9e313aa6285d79060fe8efec3f7b82438f08exe 
2023-05-02 08:49:568c4e0a4b8971edb79273aa13f90f12efdcbc3e19cdbbf4ad281103d23e11b600exe  
2023-04-09 04:24:191315c91ebcb3ca7bea9a90ca67cde40d0afb97dbc16d001d6978d6cc6212e298exe  
2023-03-30 07:05:088a948dedd738ea8bfa6519f32c1319626230f048d4b9a37cc1710e89ea9a361fexe  
2023-03-25 14:42:346bb0e7295b8c09d40cdc802cd213589feed7739d5899acb4fc40135e970801ccexe  
2023-03-17 00:18:46fc2b749aaf3e958560ab4e6ccf4e9b18e0151ef6573c874a61c557567aebe809exe  
2023-03-01 10:34:57747001ca44f0cfdec3f2b5656e37a3921b60b6689be82f6c9baae80f76c26981exe  
2022-12-28 20:34:26656bb3b4a18c40d3e431c5f24cf712539a4880631053521413cf46fae7e62686exe  
2022-12-01 19:18:06b5097ecf7769d5eab001396e00c446f9552dbf32c3c14dde6e61016f7b28a9c6exe  
2022-09-27 14:06:208ba57554d7065bbb197e566ba347ec854cee488e0042d735d7db07a91b9d2640exe  
2022-09-18 19:05:49a89875f583999882817db5f7768ab973ed595da8593e8fc79844ab4aa8b7a659exe  
2022-09-18 16:38:575a71cc01d53eb63a78b6328acaa99946dab051b3cec4aa3fed1f23959a81a8ffexe  
2022-09-13 01:44:4335401e0ea7ca4846fac6538342088f9f88935ed6d6e516f62c73b7c96601fc5eexe  
2022-06-26 09:09:54e03ba9ded28753badeb2c1749619516de54fd4b116a536b83250de5122d19f50exe  
2022-06-13 05:08:34b577b8b7630448aa2ae11b52c06a05c09401b4f6f2fc637dc5098bf7ae4bb6e7exe  
2022-05-30 08:34:37e43d4e9acdf579361387f936372f331b48b5a7af4b3c40de946e5f168dbaa4ddexe  
2022-04-22 11:38:59ab0caa81adbc27ce7b85550e949f6f424c6bda9cbbfae4abb12a3bc62bd53444exe  
2022-04-02 17:44:34c1b3eda1789efc34ac960379884032202d55220572e4ae8a6aff824215859b93exe  
2022-04-01 16:46:490a3024fb4405a1873e9cae85d300ab9d68495024e21335694f7a96eca10dcd1dexe  
2022-04-01 12:58:57cfd1dfd585e7c33364c6354c32fe1b733db775ec08c5a0775f717301f8b4c8beexe  
2022-03-26 10:56:219b2cdf97972e489c3c2e7956666e0e21992ffdf0f173f5b1e4d7eb8d595ecfd4exe  
2022-03-18 10:36:19c4bef91336e7b22f6b97e76496b218caaaafd7e12b5d113b2e0c1fe4423f3bccexe  
2022-03-05 09:17:47f2e1cbaff239aef30bb5e6e39295e098b1870836de9cd1d13244b5ecde4e4795exe  
2022-03-01 01:57:01820b21a38e5086246aba7b06e08ab578407c8988234be4c6ab98ba823f605587exe  
2022-02-28 19:40:49cbb4709e19fe0d4289274a1b7702c0f943f579497517dc025ccbae9a954930fdexe  
2022-02-25 20:00:330a32ef6685844fff40ca5d20923662fec46d8300c4467d44691915aa1fb1b00eexe  
2022-02-21 19:28:490588bf8c3519ceacf4bc0d668570a16c5e4fa359cbdbdd0338d695e49e960883exe  
2021-12-24 01:53:12a877d8bfc926208d9f17132e4e04e0602384a8b7f2be0b4fc45ed1ac2e1ccf44exe