URLhaus Database

You are currently viewing the URLhaus database entry for https://buffetegypt.com/tei/iutmmian which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317841
URL: https://buffetegypt.com/tei/iutmmian
URL Status:Offline
Host: buffetegypt.com
Date added:2022-09-28 17:45:24 UTC
Last online:2022-11-29 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-29 06:01:08 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 1 days, 17 hours, 45 minutes Bad (down since 2022-11-29 23:46:19 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-26vXpDNIiPJNwZwG.zipunknown 054faccb4ed06be2dfb752209958260303b712ede3113c13f46fe713f86a6ccfn/a 
2022-11-18JRBmafaFMAfElFZ.zipunknown f50dcc89e4d3406e44f804f50ab4fb61e16485375865b02d5e4b77e7c13ca766n/a 
2022-10-26AdikGlaUXgbiDsx.zipunknown fc34e861a2997b1a275c2bb35c5a9dc3c53aaf25f917a7d19a0f4bd7c7b1450bn/a 
2022-10-22SKrVbMt.zipunknown 29a0cf203e13bc24d5c3b742a33aa56a92a3d62f751fc5fd046e60587084ad05n/a 
2022-10-17yVNLQXYulyad.zipunknown a0c60d90e23b85d1384cdd31370cd5012f371ce7a6b067f75bf7b5dc9c91089bn/a 
2022-10-13ynBE.zipunknown 1126e334ec912f3b3d07a4126a407a610e6e375136b12336ac3d761e0e53a962n/a 
2022-10-09R2106739846.zipzip 88086c396b88cbe5ae9a8a2bd221c4d66b0db548efda56f2dc2886bc79f15818Virustotal results 43.94% Quakbot
2022-10-01Card2011695301.zipzip ed3fa0303b0d911df8b3e8ef563da719c17af1ff372a683df49a9aa266efe4edn/a 
2022-09-29G2318161038.zipzip 9598b96ab0fd02f3b23f00b34c76626a8808b673b58c213783c6240e6b48675dVirustotal results 3.17% 
2022-09-29G2410338064.zipzip e488f1dea1df15bb03c05fe491015775098cd813db6d614bd55424286d71ed8cVirustotal results 3.17%