URLhaus Database

You are currently viewing the URLhaus database entry for https://buffetegypt.com/tei/stndoicnitii which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317797
URL: https://buffetegypt.com/tei/stndoicnitii
URL Status:Offline
Host: buffetegypt.com
Date added:2022-09-28 17:45:17 UTC
Last online:2022-12-02 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-29 02:43:07 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 4 days, 8 hours, 51 minutes Bad (down since 2022-12-02 11:34:52 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-27EyudHwZcPEQQkoIPTt.zipunknown 4bb50575bbeaa4f6be90f2604dd99de3a7444df21c73433a015ae63b8beb1b55n/a 
2022-11-21gZDlAFmiJQgujd.zipunknown 99444ebda80efaa7b763046004b1a31c7c48b90ad6b510cf1678553585359431n/a 
2022-10-29LKZpmxLmi.zipunknown 32617b3fda7220828a50da0730c38d5edc8fe188ab092a55d8802c1a44ff4869n/a 
2022-10-16CzCnphsUWVr.zipunknown 1bc5cfe5dd71e9106ef90916233ab92008b22a47cf6e845da0e384701674da46n/a 
2022-10-11Card3849285138.zipzip 4802d01605b003026d813eca5b5db43cc1d208d17438c46794a6bd24323a32a6n/a 
2022-10-10Co457914289.zipzip ae5f53b181775aec615d6fe50ce9b34bb9bc75e9f6b8d8a6b596bc11498e08e9Virustotal results 46.15% Quakbot
2022-10-06Co1778728288.zipzip a6fb8a93b05c056d866d6215d7ec108e787d62825b18dcd375faeb532c7bf576Virustotal results 21.88% Quakbot
2022-10-03Molestiasdeserunt1171912863.zipzip 33309b86342939e6a9033819200601116ea19a0bb9ae578c823dd03c2e742aa6Virustotal results 3.17% 
2022-09-30C2594661409.zipzip 60c8d2fae4dc724842631ab8ad908b905ec351de564f8f82d3b65ebdfe51b72bn/a 
2022-09-30G2665898612.zipzip 91e6c4b538cf60e5584fa591c1700d73c4c97db12ca70c301e0f9f8725fcf3feVirustotal results 4.84% 
2022-09-29G904670551.zipzip 3bbf16273098f499e5893e3127238cb282d10ec40a35f4001a32c8dcf14b4a75Virustotal results 3.17% 
2022-09-29G2570160463.zipzip 4e689407ab4e6778d8a4adff169fd551c762f12c531d57e968767d3d8694a6f2n/a