www.scantips.com

Hdhub4u.tax.mkv -

A user downloaded Hdhub4u.tax.mkv thinking it was Dune: Part Two screener. Within 3 minutes of execution:

Risk Level: Critical The file Hdhub4u.tax.mkv is almost certainly not a standard video file (Matroska container). It is a malicious payload disguised as a movie, distributed via the pirate streaming site Hdhub4u (using the .tax TLD). Execution of this file leads to infostealer deployment, ransomware, or remote access trojan (RAT) infection. Hdhub4u.tax.mkv

  • Persistence via scheduled task or registry Run key.
  • Beaconing to C2 domain hdhub4u-cdn[.]top.