URLhaus Database

You are currently viewing the URLhaus database entry for https://buffetegypt.com/tei/sineotsb which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317815
URL: https://buffetegypt.com/tei/sineotsb
URL Status:Offline
Host: buffetegypt.com
Date added:2022-09-28 17:45:20 UTC
Last online:2022-11-29 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 23:08:07 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 1 days, 10 hours, 56 minutes Bad (down since 2022-11-29 10:04:40 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-20mRFW.zipunknown 99ee4183a54aa1c7d34bf9b7e4f0ae48ef306fdaadecc6ab77e7a1b4b86b5075n/a 
2022-11-18fDnxasNMuAWJvHJpDaL.zipunknown 9d185afe0a5e668deedb9d557c75ebcbc862d4434402e148a96fd1869e82160bn/a 
2022-10-30GNCioihatsdzw.zipunknown 65bbd524fe98547a4da3cfcd2e32bfe6a9984ee568dafba995743d8da4e6b581n/a 
2022-10-15UUWBMyZHDaVWsfhmbW.zipunknown d15466dcdb75ed7f05cfc44ce0a44d286ffa9e9378b5a9ac108c1a50be0a201an/a 
2022-10-13AsPZ.zipunknown 8f409c93661cbf4ff0c9b840553e8b6846ccd2aac6903944c6a1681abd4b9983n/a 
2022-10-10R2018764834.zipzip 7fe2fcb0e65ea1e586d7d5347fd7cc357de10f1662b7ed5813457b8f3fc76b45Virustotal results 37.88% Quakbot
2022-10-06Etut506621730.zipzip eb092e3c365c9759b0755ad5b1fe0c58e5353bb729fc0d325709705881018723Virustotal results 19.70% Quakbot
2022-10-01Card2803169534.zipzip 19627a985c091fa00cef043580ba7c90257863b1c370f252003c6f304d4bfef9Virustotal results 3.23% 
2022-09-30G2323024191.zipzip 5ea92f673bd81b91c55ee7289b8e667c3ecbc39a7dc873a403bf97cb2284bfefVirustotal results 11.48% 
2022-09-29Gall1816617174.zipzip 277876d6e721fa428e170299eb31b60adf8e85ebe723244a3bfc2fec63be7b9eVirustotal results 3.17% 
2022-09-29Gall1939267435.zipzip 02701afbc58237f013ff4a02b783ad5e51e3b96e6e6ac210548173edcb9e1b24Virustotal results 3.17% 
2022-09-28Gall4255903158.zipzip 7be30da1d97b68561aa7e18b7837cd23fda7cf6f27162454434773c729a7ec8cn/a