URLhaus Database

You are currently viewing the URLhaus database entry for https://exeseria.com/aperto which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2676452
URL: https://exeseria.com/aperto
URL Status:Offline
Host: exeseria.com
Date added:2023-07-04 12:31:13 UTC
Last online:2023-07-04 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2023-07-04 12:47:07 UTC to mail{at}proton66[dot]ru)
Takedown time:4 hours, 22 minutes Good (down since 2023-07-04 17:09:35 UTC)
Tags:brt geofenced Gozi link ISFB link ITA ursnif link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-07-04Fatt_20230704_6452995284.zipzip 4d5c45337ef42f8a845b0787cd2b3272efe7286b46ff4f8837edbf4e0aefcd21n/a Gozi
2023-07-04Fatt_20230704_8578194482.zipzip d013a608ecf17c14d9f817d4e48541d93efe95d06e728b4d669483ff1e401c67n/a Gozi
2023-07-04Fatt_20230704_6854050650.zipzip a13d8b06719cfc2130205f430dea5d0436b1b9bb3d03b34cd0ebe7753f30fab7n/a 
2023-07-04Fatt_20230704_9913249021.zipzip 30f55eb8b4ecf6949441629e63f3819f8a861982451ee1ffafdd4e497ddfd9cen/a Gozi
2023-07-04Fatt_20230704_3934000829.zipzip 5e5bd3e339d7d5773482afcf9f5cd0aa612b5415a250b83f057201aba3a9af2bn/a Gozi
2023-07-04Fatt_20230704_8282411866.zipzip 602a37a53069e45034608e4dd45d8858bd59e0630d33703524d2ee555c659c55n/a Gozi
2023-07-04Fatt_20230704_1994954518.zipzip 105124be1f12a272d606616e5e6273fd87f8d545223103ca93b1c2e18376c7f5n/a