URLhaus Database

You are currently viewing the URLhaus database entry for http://cdn-10049480.file.myqcloud.com/jd/jd144.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:105988
URL: http://cdn-10049480.file.myqcloud.com/jd/jd144.exe
URL Status:flame Online (spreading malware for 7 years, 3 months, 19 days, 15 hours, 27 minutes)
Host: cdn-10049480.file.myqcloud.com
Date added:2019-01-19 21:10:07 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2026-02-12 15:43:10 UTC to zhaoyz3{at}chinaunicom[dot]cn)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-06-19n/aexe 646acf7d285aa72696252630192922c74f9b787dd10d054a1ed598094ab5bef3n/a 
2019-06-14n/aexe ba9cadac827e94d9c416c9db05a0acd293fb5a00439d086265dda78c4bf59e6cn/a 
2019-06-14n/aexe 75e63d063bba0762be51b99775a10f28b56c92cec3cb2a660fe236fa847ee61an/a 
2019-06-11n/aexe b22800f948757bbd9e58ed91a1a406407fa8a708ddf87f0b22a2627d92063daen/a 
2019-01-26n/aexe 45a74c76af05f78f9d88b2d939f681171915717d2d82a53560224c77ac225cben/a 
2019-01-19n/aexe bf4f356b45ca7b7bef77f2c047d0cdd97103ad84b5ace112465871ae92f6cd2aVirustotal results 34.38%