URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host xzc.198424.com.

Database Entry


Host:xzc.198424.com
Spamhaus DBL:Abused domain (malware)
SURBL:Blacklisted
Firstseen:2018-09-25 03:45:07

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-01-15 15:46:34218.94.210.116Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-09 16:21:3143.246.228.231Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-09 16:21:3143.246.228.229Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-09 16:21:3143.246.228.232Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-09 16:21:3143.246.228.233Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-09 16:21:3143.246.228.234Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-09 16:21:3143.246.228.235Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-09 16:21:3143.246.228.228Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-09 16:21:3143.246.228.230Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-07 18:30:1160.200.32.70Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-07 18:30:1160.200.32.69Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-05 04:32:4343.249.132.235Not listedAS0 - CNno
2019-01-05 04:32:4343.249.132.241Not listedAS0 - CNno
2019-01-05 04:32:4343.249.132.237Not listedAS0 - CNno
2019-01-05 04:32:4343.249.132.240Not listedAS0 - CNno
2019-01-05 04:32:4343.249.132.236Not listedAS0 - CNno
2019-01-05 04:32:4343.249.132.239Not listedAS0 - CNno
2019-01-05 04:32:4343.249.132.238Not listedAS0 - CNno
2019-01-04 17:23:56103.44.171.117Not listedAS4847 CNIX-AP China Networks Inter-Exchange- CNno
2019-01-04 17:23:56103.44.171.115Not listedAS4847 CNIX-AP China Networks Inter-Exchange- CNno
2019-01-04 17:23:56103.44.171.114Not listedAS4847 CNIX-AP China Networks Inter-Exchange- CNno
2019-01-04 17:23:56103.44.171.116Not listedAS4847 CNIX-AP China Networks Inter-Exchange- CNno
2019-01-04 17:23:56103.44.171.118Not listedAS4847 CNIX-AP China Networks Inter-Exchange- CNno
2019-01-04 17:23:56103.44.171.119Not listedAS4847 CNIX-AP China Networks Inter-Exchange- CNno
2019-01-04 17:23:56103.44.171.120Not listedAS4847 CNIX-AP China Networks Inter-Exchange- CNno
2019-01-04 17:23:56103.44.171.121Not listedAS4847 CNIX-AP China Networks Inter-Exchange- CNno
2019-01-04 10:23:09218.94.210.2Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-04 05:21:0660.200.32.68Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-04 05:21:0660.200.32.75Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-04 05:21:0660.200.32.71Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-04 05:21:0660.200.32.72Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-04 05:21:0660.200.32.74Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-04 05:21:0660.200.32.73Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-01-03 17:34:12111.40.178.225Not listedAS9808 CMNET-GD Guangdong Mobile Communication Co.Ltd.- CNno
2019-01-02 11:40:34119.36.228.230Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-01-01 05:52:59125.76.247.211Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2018-12-31 03:12:4543.243.246.231Not listedAS17816 CHINA169-GZ China Unicom IP network China169 Guangdong province- CNno
2018-12-31 03:12:4543.243.246.229Not listedAS17816 CHINA169-GZ China Unicom IP network China169 Guangdong province- CNno
2018-12-31 03:12:4543.243.246.230Not listedAS17816 CHINA169-GZ China Unicom IP network China169 Guangdong province- CNno
2018-12-31 03:12:4543.243.246.228Not listedAS17816 CHINA169-GZ China Unicom IP network China169 Guangdong province- CNno
2018-12-31 03:12:4543.243.246.232Not listedAS17816 CHINA169-GZ China Unicom IP network China169 Guangdong province- CNno
2018-12-31 03:12:4543.243.246.233Not listedAS17816 CHINA169-GZ China Unicom IP network China169 Guangdong province- CNno
2018-12-31 03:12:4543.243.246.234Not listedAS17816 CHINA169-GZ China Unicom IP network China169 Guangdong province- CNno
2018-12-31 03:12:4543.243.246.235Not listedAS17816 CHINA169-GZ China Unicom IP network China169 Guangdong province- CNno
2018-12-29 22:46:32116.55.241.187187.241.55.116.broad.km.yn.dynamic.163data.com.cnNot listedAS134765 CHINANET-SICHUAN-CHENGDU-MAN CHINANET Sichuan province Chengdu MAN network- CNno
2018-12-24 02:04:20117.59.126.230Not listedAS17969 CNNIC-KUANCOM-AP Beijing Kuancom Network Technology Co.,Ltd.- CNno
2018-12-24 02:04:20117.59.126.227Not listedAS17969 CNNIC-KUANCOM-AP Beijing Kuancom Network Technology Co.,Ltd.- CNno
2018-12-24 02:04:20117.59.126.233Not listedAS17969 CNNIC-KUANCOM-AP Beijing Kuancom Network Technology Co.,Ltd.- CNno
2018-12-24 02:04:20117.59.126.232Not listedAS17969 CNNIC-KUANCOM-AP Beijing Kuancom Network Technology Co.,Ltd.- CNno
2018-12-24 02:04:20117.59.126.226Not listedAS17969 CNNIC-KUANCOM-AP Beijing Kuancom Network Technology Co.,Ltd.- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-12-25 19:14:17http://xzc.198424.com/winrar-x64.exeOfflineAgentTesla exe Clean@zbetcheckin
2018-09-25 03:45:15http://xzc.198424.com/CIJIZHANCZHUZHUXIA.ZIPOnlinezip Clean@zbetcheckin