URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host xzb.198424.com.

Database Entry


Host:xzb.198424.com
Spamhaus DBL:Abused domain (malware)
SURBL:Blacklisted
Firstseen:2018-11-28 11:14:01

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-01-18 14:14:05101.71.105.228Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-18 14:13:35101.71.105.227Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-18 14:13:05101.71.105.232Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-18 14:12:34101.71.105.226Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-18 14:12:04101.71.105.231Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-18 14:11:33101.71.105.233Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-18 14:11:03101.71.105.229Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-18 14:11:03101.71.105.230Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-17 12:13:5945.116.210.228Not listedAS0 - CNno
2019-01-17 12:13:5945.116.210.229Not listedAS0 - CNno
2019-01-17 12:13:5945.116.210.230Not listedAS0 - CNno
2019-01-17 12:13:5945.116.210.231Not listedAS0 - CNno
2019-01-17 12:13:5945.116.210.232Not listedAS0 - CNno
2019-01-17 12:13:5945.116.210.233Not listedAS0 - CNno
2019-01-17 12:13:5945.116.210.234Not listedAS0 - CNno
2019-01-17 12:13:5945.116.210.235Not listedAS0 - CNno
2019-01-15 12:38:3960.169.5.227Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-15 12:38:3960.169.5.228Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-15 12:38:3960.169.5.229Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-15 12:38:3960.169.5.230Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-15 12:38:3960.169.5.231Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-15 12:38:3960.169.5.232Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-15 12:38:3960.169.5.233Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-15 12:38:3960.169.5.234Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-11 23:00:32139.209.203.192192.203.209.139.adsl-pool.jlccptt.net.cnNot listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-11 23:00:31139.209.203.188188.203.209.139.adsl-pool.jlccptt.net.cnNot listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-11 23:00:31139.209.203.190190.203.209.139.adsl-pool.jlccptt.net.cnNot listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-11 23:00:30139.209.203.187187.203.209.139.adsl-pool.jlccptt.net.cnNot listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-11 23:00:28139.209.203.195195.203.209.139.adsl-pool.jlccptt.net.cnNot listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-11 23:00:28139.209.203.200200.203.209.139.adsl-pool.jlccptt.net.cnNot listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-11 23:00:27139.209.203.189189.203.209.139.adsl-pool.jlccptt.net.cnNot listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-11 23:00:26139.209.203.191191.203.209.139.adsl-pool.jlccptt.net.cnNot listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-11 05:45:1258.216.16.38Not listedAS23650 CHINANET-JS-AS-AP AS Number for CHINANET jiangsu province backbone- CNno
2019-01-11 05:45:1258.216.16.41Not listedAS23650 CHINANET-JS-AS-AP AS Number for CHINANET jiangsu province backbone- CNno
2019-01-11 05:45:1158.216.16.37Not listedAS23650 CHINANET-JS-AS-AP AS Number for CHINANET jiangsu province backbone- CNno
2019-01-11 05:45:1158.216.16.43Not listedAS23650 CHINANET-JS-AS-AP AS Number for CHINANET jiangsu province backbone- CNno
2019-01-11 05:45:1058.216.16.35Not listedAS23650 CHINANET-JS-AS-AP AS Number for CHINANET jiangsu province backbone- CNno
2019-01-11 05:45:1058.216.16.39Not listedAS23650 CHINANET-JS-AS-AP AS Number for CHINANET jiangsu province backbone- CNno
2019-01-11 05:45:1058.216.16.42Not listedAS23650 CHINANET-JS-AS-AP AS Number for CHINANET jiangsu province backbone- CNno
2019-01-11 05:45:0958.216.16.36Not listedAS23650 CHINANET-JS-AS-AP AS Number for CHINANET jiangsu province backbone- CNno
2019-01-10 17:31:11183.214.164.239Not listedAS9808 CMNET-GD Guangdong Mobile Communication Co.Ltd.- CNno
2019-01-10 17:31:04183.214.164.236Not listedAS9808 CMNET-GD Guangdong Mobile Communication Co.Ltd.- CNno
2019-01-10 17:30:56183.214.164.233Not listedAS9808 CMNET-GD Guangdong Mobile Communication Co.Ltd.- CNno
2019-01-10 17:30:48183.214.164.241Not listedAS9808 CMNET-GD Guangdong Mobile Communication Co.Ltd.- CNno
2019-01-10 17:30:37183.214.164.234Not listedAS56047 CMNET-HUNAN-AP China Mobile communications corporation- CNno
2019-01-10 17:30:30183.214.164.238Not listedAS9808 CMNET-GD Guangdong Mobile Communication Co.Ltd.- CNno
2019-01-10 17:30:21183.214.164.235Not listedAS9808 CMNET-GD Guangdong Mobile Communication Co.Ltd.- CNno
2019-01-10 17:30:21183.214.164.237Not listedAS56047 CMNET-HUNAN-AP China Mobile communications corporation- CNno
2019-01-10 14:20:50111.63.56.211Not listedAS9808 CMNET-GD Guangdong Mobile Communication Co.Ltd.- CNno
2019-01-10 14:20:28111.63.56.212Not listedAS24547 CMNET-V4HEBEI-AS-AP Hebei Mobile Communication Company Limited- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-11-28 11:30:14http://xzb.198424.com/XXGSJYWGXRJ.ZIPOfflinezip Clean@zbetcheckin
2018-11-28 11:14:05http://xzb.198424.com/cfdanbantoushi.zipOfflinezip Clean@zbetcheckin