URLhaus Database

You are currently viewing the URLhaus database entry for https://buffetegypt.com/tei/teutbeavorpllao which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317819
URL: https://buffetegypt.com/tei/teutbeavorpllao
URL Status:Offline
Host: buffetegypt.com
Date added:2022-09-28 17:45:21 UTC
Last online:2022-12-02 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-29 01:09:07 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 4 days, 10 hours, 36 minutes Bad (down since 2022-12-02 11:45:13 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-28pjuIz.zipunknown 1a4d2faa385deea4f8bee6e17e9fdfcf2017fbf8f33fa337dd1170ef34e8e64dn/a 
2022-11-24elnhqXhZFQ.zipunknown e696d27d79570e1f8f9ddc2f10ad3c12e3c2c77aa0ede209c1d4fd056828a76bn/a 
2022-10-27QYzcMVhjBGRDEJAQa.zipunknown 03a540b67c09512c496737a5585dea5eea3adbd8780638b1c69d7d94f15d1914n/a 
2022-10-20KbckGv.zipunknown 2052db340f281c98f0cd48c8eab6e8bf473b2b9719e2c64b5c572706cda73a85n/a 
2022-10-14VdQtUGUCO.zipunknown 8fc74c066d773080097b4afef96b8bd21e26ca6153e91dad02d15a849fac05een/a 
2022-10-09Co4281913117.zipzip 5d93db53e7cef7305e4527f21a90743f24cdb7d6cf7bd4b876797e0b6ecda496Virustotal results 40.91% Quakbot
2022-10-05ykNdUqtDgDplNFDO.zipunknown 40a61b9386720930b714e681cab0935a36ad9402615c92aecc5ceb06e4d8d57an/a 
2022-10-01CA305856638.zipzip 8838d5983b0e08616f290c9ac49fd46467415533fddaf7f7f31ee768fb9fafd7Virustotal results 3.23% 
2022-09-30G4146980318.zipzip e45fd79458e81a4b22d69d76c0f3d576383332be0a3c1ec9779f6209c744a644Virustotal results 1.59% 
2022-09-29Gall601814791.zipzip 4779bab23e65424d0ad72400c2f724ffe277fe9de0e858c38e42f468182578bdVirustotal results 3.28% 
2022-09-29G3178394579.zipzip b34f40a1c73cfbbb083503619f1dfdfb42f0ab91abb2f87973d68d93f3b6f2een/a