URLhaus Database

You are currently viewing the URLhaus database entry for https://hmtdtechvn.com/ia/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632555
URL: https://hmtdtechvn.com/ia/?1
URL Status:Offline
Host: hmtdtechvn.com
Date added:2023-05-15 15:14:13 UTC
Last online:2023-05-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 15:16:01 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 days, 6 hours, 11 minutes Poor (down since 2023-05-17 21:27:23 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Mgleuq.jsjs af1b94948c602627bf551b38dae50d6be3c349f5b15e7fe1d2a792e047809553Virustotal results 28.81% Quakbot
2023-05-17Rtcnqi.jsjs 62497d1af3f04d7da40a34f39d4cb3b28e855a47c2507372bfa759e66adfa3f6Virustotal results 11.86% Quakbot
2023-05-17Iyto.jsjs 9d9924b0f0e33e1b74db34d25035395c2f29b1c29926ab16bfec2e29f30c8b81Virustotal results 27.12% Quakbot
2023-05-17Miyvr.jsjs d3c173c2dfa25e646847bc107890d76906c807bf85968b5dd9e96044a7729b2fn/a Quakbot
2023-05-17Nndk.jsjs 0836ece78eb77f4b5ebf101fc5e4317ad5554305bff6466db565f247b93b5928n/a Quakbot
2023-05-17Curm.jsjs e7f9f08e3f4d33b3e3d8d6ef98ee0b3d68e0f3060db85ea5eb98a4583dcfc85en/a Quakbot
2023-05-17Tybn.jsjs 9b5b08019252c09fd8e56a8d0662dde68b2c2585cbbdcdae1b11845ee76b703dn/a Quakbot
2023-05-17Hgzkshg.jsjs 770997562fc398e1de5a1046e98601fa84f4e355e0c62f9e5ec235739520229cn/a Quakbot
2023-05-17Uwizm.jsjs c9fb5a8c6c21545daab224045773137777ee4483452357e8963b7a099f143415n/a Quakbot
2023-05-17Qweho.jsjs 855e424c974e9fdbcffe4bb4912fffb6804ea13a3ee6698f4e2dd2264dc39e2bn/a Quakbot
2023-05-17Bloaft.jsjs e3d72f4ca588364cb5f9fe61cc007499606e8778382bac6c97df9020d1d879ccn/a Quakbot
2023-05-17Hhqy.jsjs 18f589e3a684f0d1502e43f2caad2f289c19c9efa87b7d693b0cf9715ac57829n/a Quakbot
2023-05-17Kwonra.jsjs 6cc93d014ffae035f3f9247f6c9886586f612ff885ec507e764bbe2a8d4b6c5en/a 
2023-05-16Erkzkj.jsjs 2e34cae1a33c1670a3f2bac349856a34de740b977a5ae72ff270a471dc1a653dn/a Quakbot
2023-05-16Kdnnb.jsjs 223d771929b6ae57c80b496c12da4f3da7efbf6d8e4dd152d5c0e35592f52efbn/a Quakbot
2023-05-16Lmzdzpj.jsjs 5fd5b4841b3c37e50b27cab2a9710c4758e105d62cd53d826bae594242d04106n/a Quakbot
2023-05-16Rlprrh.jsjs 4c15b2b4f0ad16e0032b5871f27ec810cc3904dc353b59c2993aaee494769950n/a Quakbot
2023-05-16Nolqs.jsjs 6df9487853155bcd580766224f003cce9354e17df2c4655864e793c804ad1a69n/a Quakbot
2023-05-16Tawed.jsjs 931a44a2d42fa77bbe01621c7e165dce32cae2fe7ce45a546e3886e68c30da83n/a Quakbot
2023-05-16Rdsct.jsjs b7e87b90e7fdb98000639d07ebf58b2f3a641c1e7e034b5fe11ec720a11fc414n/a 
2023-05-16Ryvr.jsjs 393d21aff505d6a6292fea99470a1a034cc2d0025585a5662daef44312d340b6n/a Quakbot
2023-05-16Wtdec.jsjs 14df57aa89dab7da67710872dea06afaeac8c5195756faafa06667324b4d6b02n/a Quakbot
2023-05-16Rxqtbc.jsjs ba2c70677e6bc2344aac5eb83d9727012c36818c2333b58cf89ec3c5c09e8d38n/a Quakbot
2023-05-16Nbsxyltq.jsjs db33560ce3163d49ff328a650246542385f659a031eee9393033ad8b8fb685fan/a Quakbot
2023-05-16Ogbaplka.jsjs 7b2031d0417d521dc8bc1f27772f8ac62b0078dcdbc9df6249a642052f13bbbcn/a Quakbot
2023-05-15Hbed.jsjs 69f72ba4c442e89b7365f16be619df7ef906ac5ee5c974cae8019f9f197a6ca3n/a Quakbot
2023-05-15Tkbptz.jsjs 77a719c23dd1eaa498ce3b1eac4f413d00f209f9ee03538375e727032de1a3f9n/a Quakbot
2023-05-15Gydftcn.jsjs 030a3ad6c396ebe7c1e7606fe0ec2827f07c936879bd9658537a2ab2e42891e3n/a Quakbot
2023-05-15Phytvpkn.jsjs 6c3b494d4b335a46c9f2d938c2775e332e342ab6847678a10b28a3774c98b08bn/a Quakbot
2023-05-15Hozf.jsjs afb201fc37bce425a70dffca20bd382beaa3dcc43961bf3dd49344755d4a2933n/a 
2023-05-15Zbyoteg.jsjs 7f19129f12c89349cb68706a1f4a93cac81cb8f1447df174d5b17c02898b1d0bn/a 
2023-05-15Mxdrb.jsjs d6e0369fb1580391f52bed206784e34f2a3956dd5fa31f80d65dacc3e08c3ea0n/a Quakbot