URLhaus Database

You are currently viewing the URLhaus database entry for https://buffetegypt.com/tei/eipmuts which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317661
URL: https://buffetegypt.com/tei/eipmuts
URL Status:Offline
Host: buffetegypt.com
Date added:2022-09-28 17:44:14 UTC
Last online:2022-11-29 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 19:01:07 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 2 days, 2 hours, 50 minutes Bad (down since 2022-11-29 21:51:31 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-25RqxZKapcAESKTN.zipunknown df27fb3fc25fc98df627f7e0d675eb7fd9dfd68ce2692db0451dd1c3371da12fn/a 
2022-11-17bstnZI.zipunknown 9392576b02c40ed883ddb09358ac5c0c0212046945b0542f35686c8c6d642066n/a 
2022-10-29hIhoTqbnWIzuTACCCrW.zipunknown 770ab4de59c5c5eb5334acca1fbe40a30520e0b7761901c4ae1a48fe4700f3adn/a 
2022-10-23DcgTvsAIHGHtbCb.zipunknown ecf2da31fb6726fed383c9e30819eeac095bea66c5dbec4de8579d1203143652n/a 
2022-10-16cncVhXJtYONt.zipunknown 5139164905299fd7b201643eb62fa615014234ac8a017a3b3fd974c585a55923n/a 
2022-10-11NE1297940471.zipzip 8a948bb67b99b1da6062edc8943b7b7444e21522ecd91c63f6b0d45743d24693Virustotal results 3.23% 
2022-10-09R1065677062.zipzip b89c515719cad6a21156db566de131ddf1220a9bbd84c91a32972f7ee20b6450Virustotal results 48.48% Quakbot
2022-10-03Card270174003.zipzip 7a6710d8f536bfa8133a782ad73f151ca6ad4aff6f4384f8c09358eb02940a3cVirustotal results 1.61% 
2022-09-30Card1822182889.zipzip 65c8e1b0f0a0df0383161b1f85acc96f175d91aa46d97443bbb67ac9c2961a3bVirustotal results 1.59% 
2022-09-29Gall771946257.zipzip 964faeebe8e2fba66597574e3c9ada95e0e55efdc76339fc0f4b8211571b3e73Virustotal results 3.17% 
2022-09-29Gall175198786.zipzip c8af9aa21f10dfcc4e269ff2e139b447aa8ebfb5469f6e5c41e9766f1242bbceVirustotal results 1.79% 
2022-09-28amutuC2601541487.zipzip bb87f26ea792f42118304907303150b199b8302685a28052bc157dc85ef017c9n/a