URLhaus Database

You are currently viewing the URLhaus database entry for https://getyourboardingpass.com/ete/uiftnnog which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2319147
URL: https://getyourboardingpass.com/ete/uiftnnog
URL Status:Offline
Host: getyourboardingpass.com
Date added:2022-09-28 17:56:22 UTC
Last online:2022-11-30 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-25 15:45:13 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 months, 2 days, 20 hours, 18 minutes Bad (down since 2022-11-30 14:15:56 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-28GLNHvYgYhLQ.zipunknown f5cbe31ad3196e6bdcfdf4e239049d5777864f1fe4b298375abe1f18cacd346cn/a 
2022-11-22esSVansQfrqJpGYoW.zipunknown 1988901c7e39468b1fc0a2f5677c1fd7815400e9295e52c7eb6d46046206711dn/a 
2022-11-16nqSXYHCanHENbdjXg.zipunknown 40521bc2cbb5ab6b8eb6605895286c25da105012324aa21ecfbbfebbd8504341n/a 
2022-10-25VxEbYh.zipunknown 68ff2f5d72ed39b10476112c35211d77e0a5242f20030c6753e6a8cf0cde9ce8n/a 
2022-10-21zOYUSGclnUicf.zipunknown ca53e721e16ed7ac59a0d10aeb1bd9d6dac3cc420daf8f121b60e4f14dfe1e52n/a 
2022-10-17nkdKVoHxflDpUlS.zipunknown 617f5775d24a1f56959d98547b0abea06ab94bfbc7ac7eee0bd2e18e707b9f5fn/a 
2022-10-11N3385718634.zipzip 1d5de48c54e05973662485ff7724d6be62f6fd69b71884789cdb023125ab316eVirustotal results 3.17% 
2022-10-10N335762823.zipzip 8866a6608dff6f8d2fd88150276957ef609a5663a429c7ee6a6a1c4692620e4an/a 
2022-10-05HbpgYJXost.zipunknown b1886885d3dfaa2199f49be56ab68f2a8ee9359d9aa99fb8d21c5755c3738273n/a 
2022-09-30Quibusdamex1489783009.zipzip 7e1cd9ff57db1235c4e8ba95616bd9f70f95f36f4372c0a3588c3388410a383dVirustotal results 3.17% 
2022-09-29G3938641901.zipzip e24e60356d0e49e0cb3b1b4f3eca8c54510cc076f52997d008351223fb4a0d88Virustotal results 3.17% 
2022-09-29Gall2291287139.zipzip df5a6c615a3ab0b7c5059bd043e6fd949a1b65a7583887858fd0da3bd02c11d7Virustotal results 3.17% 
2022-09-28Gall3749150647.zipzip ca4fb44d7195e069df58b17a4e6df9486e74dc57a9bcc9c9fa1dd052b32c5c3dVirustotal results 3.17%