URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host download.1ys.com.

Database Entry


Host:download.1ys.com
Spamhaus DBL:Abused domain (malware)
SURBL:Not listed
Firstseen:2019-01-26 05:03:03 UTC

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-08-17 11:18:1658.20.196.142Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-08-17 10:53:0927.221.30.58Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-08-17 10:31:52112.54.108.104Not listedAS24547 CMNET-V4HEBEI-AS-AP Hebei Mobile Communication Company Limited- CNno
2019-08-17 09:51:57163.177.20.226Not listedAS136958 UNICOM-GUANGZHOU-IDC China Unicom Guangdong IP network- CNno
2019-08-17 07:39:25117.169.80.206localhostNot listedAS9808 CMNET-GD Guangdong Mobile Communication Co.Ltd.- CNno
2019-08-17 07:23:42124.236.20.137137.20.236.124.broad.sj.he.dynamic.163data.com.cnNot listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-08-17 07:15:29222.222.88.1414.88.222.222.broad.bd.he.dynamic.163data.com.cnNot listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-07-16 07:26:0361.184.215.230Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-07-10 02:18:55113.207.34.228Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-07-10 01:42:18221.15.64.228hn.kd.jz.adslNot listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-07-10 00:24:03119.84.130.250Not listedAS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-07-09 22:47:58111.6.243.204Not listedAS24445 CMNET-V4HENAN-AS-AP Henan Mobile Communications Co.,Ltd- CNno
2019-07-09 21:29:11103.239.45.16Not listedAS0 - CNno
2019-07-09 21:29:11103.239.45.17Not listedAS0 - CNno
2019-07-09 21:29:11103.239.45.18Not listedAS0 - CNno
2019-07-09 21:29:11103.239.45.19Not listedAS0 - CNno
2019-07-09 21:29:11103.239.45.20Not listedAS0 - CNno
2019-07-09 21:29:11103.239.45.65Not listedAS0 - CNno
2019-07-09 21:29:11103.239.45.66Not listedAS0 - CNno
2019-07-09 21:29:11103.239.45.67Not listedAS0 - CNno
2019-07-09 20:54:33183.60.159.169Not listedAS134763 CT-DONGGUAN-IDC CHINANET Guangdong province network- CNno
2019-07-09 20:54:32183.60.159.172Not listedAS134763 CT-DONGGUAN-IDC CHINANET Guangdong province network- CNno
2019-07-09 20:54:31183.60.159.173Not listedAS134763 CT-DONGGUAN-IDC CHINANET Guangdong province network- CNno
2019-07-09 20:54:30183.60.159.167Not listedAS134763 CT-DONGGUAN-IDC CHINANET Guangdong province network- CNno
2019-07-09 20:54:29183.60.159.170Not listedAS134763 CT-DONGGUAN-IDC CHINANET Guangdong province network- CNno
2019-07-09 20:54:27183.60.159.168Not listedAS134763 CT-DONGGUAN-IDC CHINANET Guangdong province network- CNno
2019-07-09 20:54:26183.60.159.174Not listedAS134763 CT-DONGGUAN-IDC CHINANET Guangdong province network- CNno
2019-07-09 20:54:24183.60.159.171Not listedAS134763 CT-DONGGUAN-IDC CHINANET Guangdong province network- CNno
2019-07-09 20:08:44123.138.67.110Not listedAS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone- CNno
2019-07-09 19:21:03183.232.159.202Not listedAS56040 CMNET-GUANGDONG-AP China Mobile communications corporation- CNno
2019-07-09 16:40:18121.194.7.229Not listedAS4538 ERX-CERNET-BKB China Education and Research Network Center- CNno
2019-07-03 03:56:10222.85.26.194194.26.85.222.broad.xc.ha.dynamic.163data.com.cnSBL449009AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-07-02 09:24:031.193.188.216SBL453024AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNyes
2019-07-02 09:24:031.193.188.217SBL453022AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNyes
2019-07-02 09:24:031.193.188.218SBL453021AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNyes
2019-07-02 09:24:031.193.188.219SBL453020AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNyes
2019-07-02 09:24:031.193.188.220SBL453018AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNyes
2019-07-02 09:24:031.193.188.221SBL453019AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNyes
2019-07-02 09:24:031.193.188.230SBL453017AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNyes
2019-07-02 09:24:031.193.188.231SBL453023AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNyes
2019-06-15 05:09:39171.8.242.1818.171.broad.ha.dynamic.163data.com.cnSBL450019AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-06-15 02:17:50171.8.242.1798.171.broad.ha.dynamic.163data.com.cnSBL449007AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-06-15 01:30:26222.85.26.193193.26.85.222.broad.xc.ha.dynamic.163data.com.cnSBL448976AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-06-15 01:04:52171.8.242.1808.171.broad.ha.dynamic.163data.com.cnSBL449008AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-06-13 16:53:05171.8.242.1788.171.broad.ha.dynamic.163data.com.cnSBL451740AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-06-13 02:24:09175.6.235.226Not listedAS63838 CT-HUNAN-HENGYANG-IDC Hengyang- CNno
2019-06-09 04:29:22116.207.118.88SBL448974AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-06-05 16:43:05116.207.118.73SBL452570AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-06-05 15:09:2561.184.215.229SBL449019AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNno
2019-06-05 12:07:57183.57.82.168Not listedAS58543 CHINATELECOM-GUANGDONG-IDC Guangdong- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2019-02-09 14:00:21http://download.1ys.com/ys9.exeOfflineexe Clean@zbetcheckin
2019-01-26 05:03:10http://download.1ys.com/ys8.exeOfflineexe Clean@zbetcheckin