URLhaus Database

You are currently viewing the URLhaus database entry for http://cdn-10049480.file.myqcloud.com/jd/jd137.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:105975
URL: http://cdn-10049480.file.myqcloud.com/jd/jd137.exe
URL Status:flame Online (spreading malware for 7 years, 5 months, 14 days, 17 hours, 51 minutes)
Host: cdn-10049480.file.myqcloud.com
Date added:2019-01-19 20:20:05 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2026-05-20 12:33:16 UTC to zhaoyz3{at}chinaunicom[dot]cn)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-06-19n/aexe 8d9f05a0a50f5e13063222a16df46aa0d78f4a05c92267b772765b9ca91e2bb0n/a 
2019-06-18n/aexe 14ee768669c72917fde67814c27bd0b963a1f7ff3f6cd0fb5e5b503513ea62b9n/a 
2019-06-15n/aexe 30bf89bcdb4819645919f67af05ef38ac0d4a277b8c1fd3f11361b8293c2fb7en/a 
2019-06-10n/aexe e3d540efc29879ce2be69ff04909850c548552c6b8d31b50d57283084c61a33an/a 
2019-01-28n/aexe 08aad012339b71774a6401bb2e36df0ee8823dba724c3d2afed116828a314127n/a 
2019-01-19n/aexe ed2004b277635076a9c4a8bc9871abc4a2b3172df8aa0fcd7ff8688c6bd69633Virustotal results 41.18%