URLhaus Database

You are currently viewing the URLhaus database entry for https://buffetegypt.com/tei/atetpnrutlelere which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317689
URL: https://buffetegypt.com/tei/atetpnrutlelere
URL Status:Offline
Host: buffetegypt.com
Date added:2022-09-28 17:44:18 UTC
Last online:2022-11-30 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 19:29:11 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 2 days, 11 hours, 27 minutes Bad (down since 2022-11-30 06:57:08 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-23tpHVoKVy.zipunknown 2f55f750731fb97520661557be7cd559acd5085a757bfb5a7f74baa40427c003n/a 
2022-10-29cpWAsVVZErDUz.zipunknown 9dd4a5da60ff99c0f396b9f19468cf7065f4df1a95e7c9d08c964ac4bce57eacn/a 
2022-10-20XPcI.zipunknown 641f5ad6e74da66626f87d81d5e70e0e3ce7e06f3ab0b81f000e8d254f7503d2n/a 
2022-10-14MImgTDa.zipunknown df41c9b1dcfcc565c86ce07fc5093d7c9ac2dc78e6879d6966c2f11bf32f1246n/a 
2022-10-01C3123235471.zipzip 101f2588298b662649817bb13c8a8ab86c1820a6ff021e6191a9231157eb22d1n/a 
2022-09-30Post1458070214.zipzip 8d37b2997a57f27bed8c16859bb55ec88050fbdf4ba3fe0821484005d669da59Virustotal results 1.67% 
2022-09-29Gall3031333224.zipzip f571f48661998799121a00df60c24f8ebaaa3cc14e487609d9c5d8bcfe6e9d07Virustotal results 4.76% 
2022-09-29Gall1754023536.zipzip 3aabbb9205ca76d34002b9d8788ace019469c2fb240ac59c4f1d1414afa83dfeVirustotal results 1.64% 
2022-09-28Gall1343552819.zipzip 045dd1e5bfd035677b1777a6624e5e89bba786fb10aeae2d769590f14b43e600n/a