URLhaus Database

You are currently viewing the URLhaus database entry for https://getyourboardingpass.com/ete/sibromidalao which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2319200
URL: https://getyourboardingpass.com/ete/sibromidalao
URL Status:Offline
Host: getyourboardingpass.com
Date added:2022-09-28 17:56:31 UTC
Last online:2022-11-30 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-25 15:45:13 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 months, 2 days, 8 hours, 59 minutes Bad (down since 2022-11-30 08:43:59 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-23FHcWGupnHuJCaPQ.zipunknown 4f43f0003952707b5f41b6b59134b7bef3482a0509ead0077886aa6889182f81n/a 
2022-11-16SGInY.zipunknown e908ec0c8112835b3fbbe473199371ed13896e4627847958aad5c46a57caa8f4n/a 
2022-10-29smdvyuxBSTj.zipunknown 85c17b7a172efda9748b7f0af013ad91ecd89eea4afb5124a2b2a51bda2a306an/a 
2022-10-23yFezNpAsXievsWeh.zipunknown 5583f21825567527e20a899bd0e89f92b8b0dd41cef0fd5d77b7542e5885ee2dn/a 
2022-10-15IeABwcHvmYWhjmoM.zipunknown d3f7332fa22dac7ffec07178c0c76ffb21a9e99d41cf86c52726cc9f904f093en/a 
2022-10-13KFuXHnTYRgump.zipunknown 2d2f5e7c1d7c0b584f39fb5e2475ce38ebbf6b5a507ea39f65312b7f2db170a0n/a 
2022-10-10NE312529236.zipzip baf542aeee883c8223448bf3c5ca3495f1457476f986a9f4b4ee235ad3971c5bn/a 
2022-10-06R1825433806.zipzip 3ea8bb37679ec81e661722d6dbf5fad7075bb51d1e77068dc503553d43b51e03Virustotal results 22.73% Quakbot
2022-10-04Card2364890847.zipzip 24a8317b2ef3ecba7d0c652a1eddc77691926e58e69b3c6494f7be19120abfdcn/a 
2022-09-30Card2598817253.zipzip c7df316e7a56b7bbfbf6bd5a54de75974daa4c7ade4f0f51c4780a21caffc8dcn/a 
2022-09-30Gall2699696390.zipzip 4a9b5ba4e510cf0f8eaf98adbb77886e5e1492e42fdc7b2e85145f1c857d8c4eVirustotal results 3.17% 
2022-09-29Losoeberi2281078867.zipzip c0ae23a937d785a8ef38ce0e15b0d129929fe661039eb8859f72b05c9bfbc605Virustotal results 3.17% 
2022-09-29Eumaliquid1493810917.zipzip 245ae587553ed703f636374a154a3c6b216170ac04005658992b8260174f013fVirustotal results 3.17% 
2022-09-28ArtItem2469477835.zipzip 9a57b7ba24ee953da0c8c24b8084549187254e5587a5f5f02f03ddaf33abb19an/a