URLhaus Database

You are currently viewing the URLhaus database entry for https://getyourboardingpass.com/ete/olaotmersoiidll which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2319097
URL: https://getyourboardingpass.com/ete/olaotmersoiidll
URL Status:Offline
Host: getyourboardingpass.com
Date added:2022-09-28 17:56:11 UTC
Last online:2022-11-30 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-25 15:45:13 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 months, 2 days, 6 hours, 41 minutes Bad (down since 2022-11-30 11:01:46 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-23RmbMQUxxDc.zipunknown 1a3033b004c4643a63f50ebca54284e9bdccc9aa6c27578e49683bdf42eb3626n/a 
2022-11-17FOTbDGTKad.zipunknown d0be440b83f791062feeb13e95e22cda67ff303d3decf52e6f7b1fd555476281n/a 
2022-10-26bWbYmz.zipunknown e2cae18a4da23bfcc203c26f90f53d97414094dc2054f1ed7770b401cc0a5097n/a 
2022-10-23dsjKazaBzGgoCt.zipunknown ee0492a51110409340cd1b2899977d2810b00c4ac6065e159d3f5b95e51e5a79n/a 
2022-10-17lXauXXNEHAkv.zipunknown 3e0249ac3816c392232336d174696a0b195020342b46aa5a6daa49f782b6469cn/a 
2022-10-11O-1127493099.zipzip 38bb5fd6bcc9f5f6f3857bc007bfecf3be78d37d3335d19917f5414d3a7e441en/a 
2022-10-09Distinctiolabore3165484852.zipzip 5d30e2c7b99f627fc8132a3178fd698065b84c0911b033dc0cc365d7a4b6890bVirustotal results 43.94% Quakbot
2022-10-02Card244726209.zipzip 9a197c4cca2fb2208214d110d19c2180319f737ddf3fb2ecfce526a3a7b3d958Virustotal results 1.61% 
2022-09-30Card2338489769.zipzip e51e1c3913ce54bdf73efe60d6c9d00fd01e596430be7f22ec3d3aad1e48f2c5n/a 
2022-09-29Eoset4064560181.zipzip 56068d4b350bd3be415b86d79b4ad294721269d41b07d7e9777bb7ce04eb1a5cVirustotal results 3.23% 
2022-09-29Dignissimosipsa957691006.zipzip 4a9b5ba4e510cf0f8eaf98adbb77886e5e1492e42fdc7b2e85145f1c857d8c4en/a