URLhaus Database

You are currently viewing the URLhaus database entry for https://hmtdtechvn.com/ur/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634256
URL: https://hmtdtechvn.com/ur/?1
URL Status:Offline
Host: hmtdtechvn.com
Date added:2023-05-16 13:42:28 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:45:24 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 days, 7 hours, 29 minutes Poor (down since 2023-05-18 21:14:41 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Kkaqd.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Xscc.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Jbokbiz.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 23.73% 
2023-05-18Mjfwg.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4n/a
2023-05-18Sfieo.jsjs 6341f87ee4bc63114ac2e7899107fa341aafda80e5fa00f00b0f72d89ddc06d9n/a Quakbot
2023-05-18Ibqs.jsjs 08b43f87f3dd81d9be92cb99ab4547399f67348b7ffe33011b49947b98a44046n/a Quakbot
2023-05-18Esce.jsjs ad9d5d545cd208607067a384f752e68873813a4863a25840901805e6778a5f43n/a 
2023-05-18Mmedqbe.jsjs a74b08fd8574636c900a77d9d50f0c7d91b058b6a82d501d33a366e1e7c3d343Virustotal results 25.42% Quakbot
2023-05-18Qvuit.jsjs 576d80e7bad2be3b3f4ddb0ccbe067bceabbc990bb96e11007cc74c2d6ad7bean/a Quakbot
2023-05-18Judoroy.jsjs 872a8726044bc6afb068028c44ba1376f7a3a6835147e080a9c5b7de41d634afVirustotal results 25.86% Quakbot
2023-05-18Orybg.jsjs db756aef0c52e6f31a7cb628eefe67b0cc7d656427dd2d71c87ecce62165b562Virustotal results 22.03% Quakbot
2023-05-17Pdfdzkl.jsjs 356497f781814842756d631b841bd2962b7aba15e1e749956f57352ecf4e24bbVirustotal results 22.00% 
2023-05-17Eizbub.jsjs ba7f993248a05baa4fc8af51ce3e8f89889e817065c4b964cb37bfc088ae75d1n/a Quakbot
2023-05-17Bmigc.jsjs 70a531a610e47641bb1c9aa721282178341c6ccae5578f0ba31a38cfc5cad76eVirustotal results 27.12% Quakbot
2023-05-17Vbxwdjfe.jsjs 506d6f7370fc1f1367a79bb76a39e5ed1e2c5113ca286350f3239788538fa80bVirustotal results 25.42% Quakbot
2023-05-17Twlngaw.jsjs e98ab08e4897807987344800297aa41a72fc207a57b0e89510243b3b8ad0e144n/a Quakbot
2023-05-17Vntxchxm.jsjs 82cd8d7b9c35490bb2685891e16cfd099b8290ad60d557532fe6ffcdc79b6b88n/a Quakbot
2023-05-17Euutjxv.jsjs 00662b73e2bd3a971290d1314c7c89f0f6d0d7244ebb8fde1721be20fa50a8dan/a 
2023-05-17Wghlvyej.jsjs 248fc5d67ea1b9b38a0dacd8050699ab7aa3215883993f727b67f06c975a6a39n/a Quakbot
2023-05-17Comt.jsjs 1486294f49488078a42fbad30a74a9af3e8bc03cfabccefe2c1d06083fe1bb9fn/a Quakbot
2023-05-17Irbewb.jsjs 3228a416dae300b66c78907ec509dfb3b54cd13e38edc5b913734077214fd1b3n/a Quakbot
2023-05-17Frtssmf.jsjs f14e97137d0852908060dfc4f226a109b5bd863ab76288538b3ae69197edcdf2n/a 
2023-05-17Ticz.jsjs 6033ae8af6fc70b68736a84817bdc6cc804142c02eb3c8183151d166bba3c41fn/a Quakbot
2023-05-17Cvemx.jsjs 77f3e28436587c52546422dfb59a11dbede0c3b3374600b779b2b954f85d19f7n/a Quakbot
2023-05-17Jzwffhkq.jsjs 7e66db42237f2515f0311abf1191231d465516caec16b1d420e7c6b4881f8835n/a Quakbot
2023-05-16Jhddkkv.jsjs 3f8738afbc2f944d70455c1cb5aba6f0d42e88b7c7dc1af6f76888c508f546c0n/a Quakbot
2023-05-16Ffqvhjp.jsjs ee3d0535b795c50d6558f8e72a1f5949c78680eb1542633f5c3be32f976f6395n/a 
2023-05-16Bazrnrt.jsjs e76add623fc09670f6e810ae1f5164fd1343a5300393f334d66ed3ac55ba55a7n/a Quakbot
2023-05-16Zjmilpsy.jsjs e027612564ac68bf5e3bb23762bcef17d1f894f3556e50d4450079879962a6a3n/a Quakbot
2023-05-16Zwyw.jsjs bc069a788a9bec84a7fdf838eb186fc3fe9ecfe3514490b4fed9e5bd96d95981n/a Quakbot
2023-05-16Sooavdn.jsjs 13f9820260b4d21afcc4d5f369f30a33c17f5b47237b7d3df78c2d48d9f836d3n/a Quakbot
2023-05-16Naqrzbc.jsjs a8c8aa9c1e55e0b539b05a35ec1c0a83eca63c01047d10153a9d0638976978c2n/a Quakbot