URLhaus Database

You are currently viewing the URLhaus database entry for https://bulleto.io/uep/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2667525
URL: https://bulleto.io/uep/?1
URL Status:Offline
Host: bulleto.io
Date added:2023-06-20 12:01:58 UTC
Last online:2023-06-22 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100136781 created on 2023-06-21 10:39:03 UTC)
Takedown time:1 day, 10 hours, 56 minutes Poor (down since 2023-06-22 21:35:46 UTC)
Tags:BB33 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-22Yrh.jsjs 654f1f569154eaff418ef1074a1ff383b3d7f94a78e98c4fd13b8e82e5cad8b6Virustotal results 5.08% 
2023-06-22Fi.jsjs cf716820bec0b8482cfaee26f344736f62e198baa25d62d10d6da9094de2f2ecVirustotal results 5.08% 
2023-06-22Vfzno.jsjs 443fe120225b8cdc88ca97ef2395952d73352b17e581d63a0a6e2f0bccc45d96Virustotal results 5.08% 
2023-06-22Vou.jsjs 17a2001de9d0e9aa48ef00683fb585f2acb09017e7a3732c56992c9ea8324e98Virustotal results 1.69% 
2023-06-22Bdswg.jsjs 16cea7a01ac2bb64a5b8ca3f07e292ab95ed69a0d5f5f14c282f9b5df23c92d0Virustotal results 5.08% 
2023-06-22Crnps.jsjs c3b05c561e2476182c4779fd82256aa8fa3ca95a55bf91fd242a0200f0f98e36Virustotal results 1.69% 
2023-06-22Uhv.jsjs a9e7350fc5f4ce499125b3c01928dc44614fa46a65c6bde3467b7f04e90fff3cVirustotal results 1.69% 
2023-06-22Eba.jsjs 356c189f53ced3ba111ea6a117b3da47af6407fc3ffd254bc2990cd06e7743deVirustotal results 5.08% 
2023-06-22Oxwd.jsjs a076ae5c8d64b289fb0026a6ea009412a759ee7863e3ce2a98968736b386b6b3Virustotal results 5.08% 
2023-06-22Iz.jsjs 0f6783024a0e83f6b37d6e2e6953a993190d9ca5e829228ccc8f525ea8107a1fVirustotal results 5.08% 
2023-06-22Xba.jsjs f78d06641c6be48ef1156fe3c4da5d6c7178326b5ba46363bf445b6762a35794Virustotal results 6.78% 
2023-06-22Rpibk.jsjs b90af508b216672d2354bbd89f1b679b4e8d29364e136c8fcbbad52111ad49adVirustotal results 1.69% 
2023-06-22Ulnpf.jsjs 6cc6d27a32b8eac41551d51bbdea809325b39c86317a9560a42a0f622d4542f6Virustotal results 1.69% 
2023-06-22Fyjxa.jsjs 4f35476010e7f26d32901cbea4cdbcd036eebb6379c4845d3a674cdcdeba2203Virustotal results 5.08% 
2023-06-22Bpe.jsjs 588bf415a84d2d554426556822b6e4f5a78a96cad18f1646471c5e76ad79cf8dVirustotal results 1.72% 
2023-06-22Zegy.jsjs 17b251725dc361c5933b4d66cfa8f1bba529224823e13e0e2b8ff8122e89635bVirustotal results 1.69% 
2023-06-22Qm.jsjs 53c081c3c6e7172cb49ea303c2453c95bc4a5c04437f895af1450d3e5162386fVirustotal results 5.08% 
2023-06-22Pg.jsjs b488bcea975b1a2fc8ef2f1258e8e256725c00e7a0126e7a8e750f9ae29a76d8Virustotal results 0.00% 
2023-06-22Lacy.jsjs c212396823716ad214a1f2cc467debbd71783a0139efcd30ff7577ee9fb84b3aVirustotal results 5.08% 
2023-06-21Cr.jsjs d7d3280dc1a7e9e6d4eabfd2851ae30243a83b3dfb15a9c87fe467736507395eVirustotal results 5.08%Quakbot
2023-06-21Ju.jsjs 6f9da22296f61ba7a6a7be8105c925ed1c9ba43bba2a40799f4fafd99262b725Virustotal results 0.00% 
2023-06-21Si.jsjs 450c16c48068707f5f0756e785be48acb4fdc2c8dd872270f92c470d38d2c86en/a 
2023-06-21Ymtzm.jsjs 6ce9fa360d9f8ad29d803117080fed8c4885f6ff757291adac5b54746d540a1bn/a