URLhaus Database

You are currently viewing the URLhaus database entry for https://tudien.org.vn/stte/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2667450
URL: https://tudien.org.vn/stte/?1
URL Status:Offline
Host: tudien.org.vn
Date added:2023-06-20 11:54:42 UTC
Last online:2023-06-22 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-20 16:01:06 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 days, 5 hours, 32 minutes Poor (down since 2023-06-22 21:33:53 UTC)
Tags:BB33 geofenced js Qakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-22Sul.jsjs bd6e6bad5ff9206e0a17d95d69bfbe1e75923d90111222f2c2074b47b07bcb0dVirustotal results 5.08% 
2023-06-22Aqkgf.jsjs 3c6c76db3f038ba349f05bf97c9d7faee8121c190da31d1fd62a3f883517b7e0Virustotal results 5.08% 
2023-06-22Dk.jsjs 3c9f87528a73e2dacea47bb34d323993309d951f9c52f185b5dd79e126082b0aVirustotal results 1.69% 
2023-06-22Xntv.jsjs e93d36152f84d520de82beef8f2f3ae262bb5cc737d920516b3a5c22719a5663Virustotal results 15.25% 
2023-06-22Jh.jsjs 0487dbda3e8db6157504ec653f64bfacceea2c820ce43997970df0f3be64aee5Virustotal results 3.39% 
2023-06-22Wxyy.jsjs 84b89064de2f26481027a74ab4db297f0b4a04f128413ca08e1473ed7c423939Virustotal results 5.08% 
2023-06-22Bl.jsjs e9a366737a75069a771d4fa64d310a78b4c8e5cbfb3a343cd06598790d9103bcVirustotal results 5.08% 
2023-06-22Sgo.jsjs c92de506077579115dc01e4baf12e4b40f823e98d542d2e1f9db994007e3dc76Virustotal results 5.08% 
2023-06-22Mnhpk.jsjs 2980f6cb96535784136c57110ae8ecce721c0a073154333c3b19b4754e299940Virustotal results 5.08% 
2023-06-22Zztcf.jsjs 169851c3cae1330346c1f14974f119d6fda4c085e95f7f23d0d2914f5fad2401Virustotal results 5.08% 
2023-06-22Mt.jsjs 351faf3374c84827a40ab074272da2c40d37e89040b3d0d233c055a712238093Virustotal results 5.08% 
2023-06-22Dpl.jsjs 4a72a5d747945fafa2ba3f53d4f635623e9452922e63f39fccb931c401d92c3fVirustotal results 1.69% 
2023-06-22Fe.jsjs 09330312e207c205297990c306d546db0025143d45e434dbe6de73300dcf6817Virustotal results 1.69% 
2023-06-22Im.jsjs 68186900a1dada3b368cc4d7611d18b8e7c1df921ca7fd5f35c17ba394bf8f54Virustotal results 1.69% 
2023-06-22Lcro.jsjs 38b4434ad043a74de18f961832e753bdd9733d6e1296b444ae330dd97500be42Virustotal results 5.08% 
2023-06-22Fx.jsjs dc4ce1058f22e07923c8a5525b12c93efca08fa16efa6ef78fba31264e021443Virustotal results 5.36% 
2023-06-22Mv.jsjs 5b6f4ff82d52e01c5315141941532b4598bbe423f5689dbf24fcaeb4629dc6f0Virustotal results 5.08% 
2023-06-22Agaw.jsjs 9d81e11e739b8dbfa1e421aed88b853af9bb53647fbae7005df52076263a157aVirustotal results 1.72% 
2023-06-22Af.jsjs 67d4ab70a102fb3a43468c98fb06870581b10bd8071260608f560a28280b1e69Virustotal results 1.69% 
2023-06-22Lyvso.jsjs 55ba694bd9ff5b117160874258ea915b234aea346feb47d053025beccf7f149cVirustotal results 1.69% 
2023-06-22Qr.jsjs e6e9c597247b5bffe864579178c85a70dabc7df3f49205e2594f9f0d4502569eVirustotal results 1.69% 
2023-06-21Kihxn.jsjs 6cf9154074f27c59eb7ee2409a96ed988949c546ae9face095406d7f76d137can/a 
2023-06-21Uuv.jsjs 140f1f8dd0dfb6cfad721d8f03d9d1d90ec6a2c2d6babb077bfd41d6261370f9n/a 
2023-06-21Dwq.jsjs 91a4e6cd48c71e332efb7228c96ac2c8484876acea6ad737bb2c415ff7300719n/a 
2023-06-20Dr.jsjs 5bb631bbbd43b9a3b1370846c3e02053e8a38d0c98529227707f4196df7d91a4n/a