URLhaus Database

You are currently viewing the URLhaus database entry for http://cdn-10049480.file.myqcloud.com/jd/jd145.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:105992
URL: http://cdn-10049480.file.myqcloud.com/jd/jd145.exe
URL Status:flame Online (spreading malware for 7 years, 5 months, 11 days, 4 hours, 37 minutes)
Host: cdn-10049480.file.myqcloud.com
Date added:2019-01-19 21:29:07 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2026-05-20 12:33:16 UTC to zhaoyz3{at}chinaunicom[dot]cn)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-07-12n/aexe 50941a1bdf312a37ca174fa8010d89310bc087b70f31a9e55c7c156d844cd531n/a 
2019-06-30n/aexe 43f1b59696c6da6cc8ce9649c01dabae6060ec143ba35e239c2a6136b64fa6edn/a 
2019-06-19n/aexe ffad36cf843eca5481ba45f3324f93b88c35fdba5804e1e0da171120683f2a94n/a 
2019-06-19n/aexe 6a4c9ce2664ed0e0763717fb579a3e9a005a0f8e164fb73413d121ed514e96fdn/a 
2019-06-11n/aexe 9776c0a021810d9f20127082faa9b212117ce37ae44d1a584c0a5f5a34ad9173n/a 
2019-06-11n/aexe c125d772e1f9716367c6130d55e5b923f097ce257d8b1b397058fbd1126a22b5n/a 
2019-06-11n/aexe 397406d0c8492b6b74eb8b87a915e4f701f83b6c94d20ca2643718b86901f02an/a 
2019-01-19n/aexe 616e5e0196d3e92240d87f73f315e4f273ccc968bc01954956593a99a7ded377Virustotal results 61.19%