URLhaus Database

You are currently viewing the URLhaus database entry for https://getyourboardingpass.com/ete/notixteeeiermtca which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2319194
URL: https://getyourboardingpass.com/ete/notixteeeiermtca
URL Status:Offline
Host: getyourboardingpass.com
Date added:2022-09-28 17:56:30 UTC
Last online:2022-11-28 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-25 15:45:13 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 months, 0 days, 7 hours, 27 minutes Bad (down since 2022-11-28 14:14:43 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-25wFDDlBmaaq.zipunknown 48578ed70d6bf1e329be9c527f0d34600c0f87b9a8fe94c69b97351dd69a28e8n/a 
2022-11-18tvcebjcrg.zipunknown 1626daa64ad665b3e9d5584b96dec6cedb775370b9470261c26f7e8254ba2911n/a 
2022-10-28brSxAJ.zipunknown 50f35a92dc584330e77a0a3bb6a6494cc0a020166b5f722dd57a9e622a08a8c8n/a 
2022-10-23czwqnPOLJaHuDNMKK.zipunknown 5f50ed6188038b3f5c41ada79804cc3682b1716dd0df372eaa57b89de180b17fn/a 
2022-10-16SrGQElONXKDDcKBrj.zipunknown 267396023ff9ebb55fa78744e11f28edd106edcdcee7a6f86262c0b3259e412en/a 
2022-10-14dsoXqYcCPsdPKQJIWj.zipunknown ee18d2836b98220e1fdeab28e4490514aefbf70f21c31e9af06f83b0b66c8a74n/a 
2022-10-04CA2968527506.zipzip 5de2e6bc8c190687f6b17a5dc0d3859ff0a42a17b01c856b9b3076790f458c34n/a 
2022-10-02Card1803031660.zipzip ad70be8b97ac8da88b8cbc909d3dd3386f9353cb1b89e0a35b69b86fc9c1ee6cVirustotal results 3.33% 
2022-09-30CA4103671282.zipzip e19d071dc122dd09eb673ad80dda2744ec44b0fb3f41bf3f1f4d51878fe92783n/a 
2022-09-30G3494394208.zipzip d81be907a53c56ec9bcbe9fafa4a63418226e73afe4cdc1d5a76c07e7bc95507Virustotal results 3.17% 
2022-09-29Sitquod3760063236.zipzip fba54471d03aaccb11b89bc3183983dd653bae803e408f315570e2e2f9bc2dfdVirustotal results 3.17% 
2022-09-29Gall1347896999.zipzip c640df904d72a6ec146b7dd63ecd05da16ee8b38b258804942aeafd5927c2e60Virustotal results 3.28%