URLhaus Database

You are currently viewing the URLhaus database entry for https://tudien.org.vn/ueen/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2646536
URL: https://tudien.org.vn/ueen/?1
URL Status:Offline
Host: tudien.org.vn
Date added:2023-05-30 16:51:08 UTC
Last online:2023-06-01 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 16:59:35 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 days, 4 hours, 42 minutes Poor (down since 2023-06-01 21:42:12 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-01document_F463_Jun_1.zipzip 631412fb8feac08841a605dd92180b9db5eba82d98b19a0b334e5c9a350d228fVirustotal results 22.58% Quakbot
2023-06-01document_C685_Jun_1.zipzip 7f527a13e482dc80023355cb5738eba9aae6deba794fe36c0a6763c218c53de4n/a Quakbot
2023-06-01document_D750_Jun_1.zipzip f803557398f4d1c524a866570ff0a130e768c6aee82b15b49edd237dd44600eeVirustotal results 19.35% Quakbot
2023-06-01document_C389_Jun_1.zipzip 20a935843e764165ab7bf8ae9a0fb0a6238e16e4f567ce09f7da1336f57a6aaaVirustotal results 21.67% Quakbot
2023-06-01document_C936_Jun_1.zipzip 80db9f6f24148c38711ab6e0e2a45808e5967a1d88da7e448d0c04a82cb9db26Virustotal results 19.67% Quakbot
2023-06-01document_B083_Jun_1.zipzip 838c6423a8363a04a9ab18cf1f95769fcce33153df1551d01f0075639820e849Virustotal results 24.19% Quakbot
2023-06-01document_A016_Jun_1.zipzip ce2eb103e4a8c813408ce101f5adf53af07160407a68ebce46c26ed54de384d8n/a Quakbot
2023-06-01doc_C019_May_31.zipzip d48a0f9841b2045a22d35880c48326e94153a29f54984798b8e4e530c7a382b0Virustotal results 17.74% Quakbot
2023-06-01doc_E762_May_31.zipzip 23e251d7798d5e46666dea2dc8b50ba8f3dcb830f379266c931f1aae09302f10Virustotal results 20.97% Quakbot
2023-06-01doc_F580_May_31.zipzip e0ce80fcbba0b2e1c4d0aeb9aee441a60f0dfca958234e6bf4a36b0baa6525f6Virustotal results 20.34% Quakbot
2023-06-01doc_B130_May_31.zipzip 35f259504a3df4af0b8cd9badf05c3b5914120e3b337dd8ea32a4e2cf7f4eaa5Virustotal results 27.42% Quakbot
2023-06-01doc_E917_May_31.zipzip af908ad486cdd7a2d0d70a609241d321e061831bd713b3b8064f934ac3a34813Virustotal results 17.74% Quakbot
2023-06-01doc_A218_May_31.zipzip 99f42665a34e2ccc80ffee3418f7700c142f15541d0ea26b8a1d272bfcd4355dVirustotal results 19.67% Quakbot
2023-05-31doc_E638_May_31.zipzip d93b2a88b77e6a72f889f131161e78e6005eb74731b89729fca4a328342bb5b0Virustotal results 21.67% Quakbot
2023-05-31doc_D968_May_31.zipzip be10f41c61518289e152897c7fed2974ffb05ca0cc0f4d63642b01d6c1ddf8a2Virustotal results 19.35% Quakbot
2023-05-31doc_B360_May_31.zipzip 2102621e34358f144ec09a1c0625542c1a610490d2a23392a19cb9bdb0ec0355Virustotal results 18.64% Quakbot
2023-05-31doc_D950_May_31.zipzip 765a386fdbd63676efdae0b0378dc05a7e0ece50d2a5952d86331eb14506d0b3Virustotal results 20.97% Quakbot
2023-05-31doc_C308_May_31.zipzip 937d0241ea8dd7a0a404676489b239556ec1187729c8f9af2f7cf54ebff03ef1n/a Quakbot
2023-05-31doc_C689_May_31.zipzip 3855c54b2d4bf90e83163c011938142dedd196a6cd750043ffec2141c57b8ddaVirustotal results 22.58% Quakbot
2023-05-31doc_F065_May_31.zipzip e71b3e6b291e12b69863498754971a9c087ce2e7082f58adc109a0b7e85b2815n/a Quakbot
2023-05-31doc_E081_May_30.zipzip fd93b157ac04e892fb34130da2ce68b1f26e6e89388c9fe2e413035809751e7dVirustotal results 19.35% Quakbot
2023-05-31doc_C749_May_30.zipzip 1bf260f59af29dc67743cca9bec294459344c188a77974a912e2ae402f30d2f9Virustotal results 19.35% Quakbot
2023-05-31doc_D743_May_30.zipzip 07a21b38d0d10591c7c45c30bd5bbc8e49bb887dfecf6462f89cfb64fd36f85fVirustotal results 20.00% Quakbot
2023-05-31doc_B054_May_30.zipzip f45c0d06913461692e88baa9501c6a6ac493a8d5ba694eb3adb5997d17bb0cc3Virustotal results 19.35% Quakbot
2023-05-31doc_D172_May_30.zipzip 9c5e9d183bcadd4b7a89a6b61d8632cef79b2ab5e89b2d53b6b44a3ff2ea0eceVirustotal results 19.35% Quakbot
2023-05-31doc_C357_May_30.zipzip f9bf9e5b2622de3f5861ef8170cb2bb7ff6ccec49ca09df91f11c820da2521fbVirustotal results 19.35% Quakbot
2023-05-31doc_D781_May_30.zipzip 14b2d80f61d6a8dd3cb191e32d08e65a44ee1c6e53125eb468376bb76737cfd3Virustotal results 20.00% Quakbot
2023-05-30doc_A426_May_30.zipzip 2832a07f523a3d152bf2c48f694d8510eeb011ae34adad4ab801b1e3d409a82aVirustotal results 19.35% Quakbot
2023-05-30doc_C104_May_30.zipzip b5e6534f65a9b5bab52e9707ade9b8d9746c0142c45ddc80411ac56853d85e11Virustotal results 17.74% 
2023-05-30doc_C465_May_30.zipzip 489500941de692861b7fd7d7d5f591d7c73994a0756ef5470d8297c5b88d708eVirustotal results 17.74% Quakbot
2023-05-30doc_B593_May_30.zipzip 47a5481751c2f5d2d36e2e1c20264feed19dc06ea820444cb7310b22e268e8a2n/a Quakbot
2023-05-30doc_A620_May_30.zipzip 7812a9272d6b44b0ea4145ee7e31453bc026e30591c418089df1e0470d398319n/a Quakbot