URLhaus Database

You are currently viewing the URLhaus database entry for http://cdn-10049480.file.myqcloud.com/jd/jd156.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:106002
URL: http://cdn-10049480.file.myqcloud.com/jd/jd156.exe
URL Status:flame Online (spreading malware for 7 years, 5 months, 15 days, 2 hours, 50 minutes)
Host: cdn-10049480.file.myqcloud.com
Date added:2019-01-19 22:05:07 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2026-05-20 12:33:16 UTC to zhaoyz3{at}chinaunicom[dot]cn)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-08-24n/aexe f281ea6f495dee0589fec5682269130ad19d11f39ed2481e7e788ed9a9049ae5n/a 
2019-06-19n/aexe 5f78c8f40932f486229e599f8c55e58d007e95a15aed0cba42dbab99e682909dn/a 
2019-06-15n/aexe 70f93470e1433df32870bb13b5323e44596ed9562a3c53c7af8c31c57b78ea1dn/a 
2019-06-14n/aexe fe9134f064dc39390e816a3a06890b1b8b5b91d647c97f40d38bd0daf94305cen/a 
2019-06-06n/aexe bf19dc9abae49bbc1841f809285ec76681333ce6bdf90b3681d7fd3b9851f29an/a 
2019-01-19n/aexe 4f5392011c892663b2e33352d9793aff749d3de3dba49df52b6979c65f5f3773Virustotal results 56.72%