URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: softdl.360tpcdn.com
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-06-05 11:02:04 UTC
Total malware sites :2
Online malware sites :2 (100%)
Offline Malware sites :0 (0%)
Newest active malware site :2021-06-05 11:06:34 UTC
Oldest active malware site :2021-06-05 11:02:19 UTC (Age: 5 years, 0 months, 18 days, 4 hours, 0 minutes)
A record(s) observed :109

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-06-05 11:02:18 104.192.108.17Not listedAS55992 QIHOO- USyes
2021-06-05 11:02:17 104.192.108.20Not listedAS55992 QIHOO- USyes
2021-06-05 11:02:16 104.192.108.21Not listedAS55992 QIHOO- USyes
2024-04-12 18:22:58 1.71.157.41Not listedAS132147 CT-SHANXI-MAN- CNno
2024-04-12 05:38:51 58.222.20.41Not listedAS4134 CHINANET-BACKBONE- CNno
2024-04-12 18:22:53 1.193.146.41Not listedAS4134 CHINANET-BACKBONE- CNno
2024-04-12 18:22:58 1.194.253.41194.1.broad.ha.dynamic.163data.com.cnNot listedAS4134 CHINANET-BACKBONE- CNno
2024-04-12 18:22:58 36.99.225.41Not listedAS4134 CHINANET-BACKBONE- CNno
2024-04-12 05:38:50 42.101.4.41Not listedAS137698 CHINATELECOM-HEILONGJIANG-HANAN-IDC- CNno
2024-04-12 05:38:50 42.101.56.41Not listedAS137698 CHINATELECOM-HEILONGJIANG-HANAN-IDC- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-06-05 11:02:19http://softdl.360tpcdn.com/inst77player/inst77p...Onlineexe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-08-15 19:29:09fe929abb4042b3a42826131602156658dcaa859e23115eee5846825f9c564d9fexe  
2021-08-04 06:59:129270068332c5c21790f6e69c462b3e967941b036d6fa7437043c0098c6c24529exe  
2021-08-03 14:47:44f13727da4ec4540b62cc8cd289d104137d3c7494bef13014ec10a83c798afad4exe  
2021-07-26 10:40:08f26187927ce2e4fd366bac4ebfb949fc276a65c320d447c2f7f06dc86188f5f9exe  
2021-06-05 11:24:23f62e6a531f0e2760d78b06f1628d337959caf6b74392a2f9d423a7de4d5b3f47exe  
2021-06-05 11:02:08f5740aded1f401665ab8bde43afee5dc0b01aa8aacabe9b8bb61b1ef52134a39exe