URLhaus Database

You are currently viewing the URLhaus database entry for https://buffetegypt.com/tei/coisnfitnuiiifcd which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317736
URL: https://buffetegypt.com/tei/coisnfitnuiiifcd
URL Status:Offline
Host: buffetegypt.com
Date added:2022-09-28 17:44:24 UTC
Last online:2022-12-01 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 18:43:11 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 4 days, 0 hours, 36 minutes Bad (down since 2022-12-01 19:19:28 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-27AAZKLbP.zipunknown 99e2e49d823228334bf4245d714e5393b4002fc20ec735d1554cd2bae6308e31n/a 
2022-11-24gLZuJAdVOENLm.zipunknown 93075b8b943df7e8d951e75bb3346bcc797a8567877e08d38e61d9076794b878n/a 
2022-11-15qAkjSnrTduBxTJ.zipunknown 06e7685cca028649e68f1d7412200a9ea8659da9a5c7024eecca9e1da7acbdd2n/a 
2022-10-28sEYPXrKltVS.zipunknown 4640cbf782cac03e05a89cdd5b22d45af22eb0d28c998fe0cbdee698ce557d0bn/a 
2022-10-22pKFD.zipunknown 349a610532e6422ea6649096108ec1a1bf8b6c3a911609cee63a317e24ed706dn/a 
2022-10-17kTbqagOXEBH.zipunknown ed283f1061c0e8d178dd8c8381719525abda747dbda37fd8957a70d60137bf99n/a 
2022-10-12OAHVsxMekl.zipunknown a189e14578861ffa1228023ba3f489ba829af04c0af48e7e8d65ee5573a3b5f9n/a 
2022-10-10NE381546581.zipzip 59125b7024eff2fb3b6ecb7a77a23d4fb9ce642594b433d566a22fe9a070cd3en/a 
2022-10-06R1840981918.zipzip f925bd2d4a29af5baae759caffbd7d2bdd2a47fe41be622db25007f6ba1e969aVirustotal results 19.70% 
2022-10-02Card1502511449.zipzip 790f9cca923dd42694953fee15db7f1517944022f9e558585e5e0aaac4f03b93Virustotal results 3.28% 
2022-09-30Post2579206289.zipzip 0465d0c1d283aafdddf3511b1ada0c19b6e4058997d67978ef32245513ae0361Virustotal results 3.17% 
2022-09-29G3627756252.zipzip f86801df7e5822f2ddbee301446c7d70eb1bd6a706621252f953ea50ae90febeVirustotal results 1.67% 
2022-09-29Gall4264959571.zipzip a4d4eec03b3663b2eef8734825a09ed1854125434b54b8e7afb191aeabb88837Virustotal results 3.17% 
2022-09-28G3661417065.zipzip 086965d516b2d062411701d83c5bd769eb2cf8e3d19a8fc7a3c0c8ac52f30985n/a