URLhaus Database

You are currently viewing the URLhaus database entry for https://buffetegypt.com/tei/etuprsrxituneaerpac which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317759
URL: https://buffetegypt.com/tei/etuprsrxituneaerpac
URL Status:Offline
Host: buffetegypt.com
Date added:2022-09-28 17:45:10 UTC
Last online:2022-11-28 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-29 02:09:10 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 0 days, 14 hours, 3 minutes Bad (down since 2022-11-28 16:12:23 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-20kcZqKWfnULPOKxCWV.zipunknown 97a2e8835bec2f00305594c1a3dbb01a323b63bee8b81a29dc79809b007834f6n/a 
2022-11-17eRLIjBWli.zipunknown 18f55acca29fe206c3e8100bb484b06f1d00ae937375d03789bceaa5b730cd67n/a 
2022-10-28KOqzlI.zipunknown a2f9202e5b0715b4048490cd1bf3a754408653c632e6bc92d30c4dcf6597164dn/a 
2022-10-22RpTIOYAjT.zipunknown 0b4b5504a8943c964313353b759598b80e6d60735457694c7aa955189016d454n/a 
2022-10-17zXOOO.zipunknown 2b869f5c1c44c7d2dd5c9f5d7148a55b15f03d21e41a914ed79a6b60565dcc64n/a 
2022-10-11AccItem616830807.zipzip 96c46c122c8912a548a644bd4c7a6a1dfa3104476bcabffb713741a8ec824b8bn/a 
2022-10-05Co4278331786.zipzip 8939c732deba8e0d9b1e9bcc9b5bb33c9ce1a7ee51114ee3509eceb85362503en/a 
2022-10-01C3529609311.zipzip 01c04f576c863bdcce403ad1c02571e98e52fab2a62f8e0402b118563d636d9bVirustotal results 3.33% 
2022-09-30uatteAum4027063351.zipzip d61aabf3da2fdf04f68840e2d5030cb0543fad233ec382ee8cc482af9df00d5fn/a 
2022-09-30G4281396186.zipzip 922161dcdfbafbbfca5ba258e32c82e4bbbc1d42308c65274e947e68f79d21a9Virustotal results 3.17% 
2022-09-29G4159830393.zipzip abe697a5f84fccd8d553114128d5ddc98ae2f4e54c641dff7a2b10823cd18711Virustotal results 3.28% 
2022-09-29G2080298041.zipzip c9e7402149fd8fb52738f9cd7a90a365913ebb4ce26961d551131603bc6a8f99n/a