URLhaus Database

You are currently viewing the URLhaus database entry for http://gstat.securitiessupportunit.com/fattura.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:364131
URL: http://gstat.securitiessupportunit.com/fattura.exe
URL Status:Offline
Host: gstat.securitiessupportunit.com
Date added:2020-05-18 05:52:05 UTC
Last online:2020-05-19 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2020-05-18 06:00:03 UTC to abusemail{at}infiumhost[dot]com)
Takedown time:23 hours, 58 minutes Good (down since 2020-05-19 05:58:39 UTC)
Tags:geofenced Gozi link ISFB link ITA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-05-19n/aexe cb27ecf6bee0620962aa33d1fc0496a1a201b80b67b446fa9d25a9e67e32abcan/aGozi
2020-05-18n/aexe 8f950ee091ed98dc27c3721fab25b202152d5c1ce7b9e90799cc4363a592cf54n/a Gozi
2020-05-18n/aexe dbc70f6820af1d49183c847fb41060dae4d4823eca2c06b439bfe8374663302an/a Gozi
2020-05-18n/aexe 689bcca4afe1075f060ed229efa42925d8586ded81f762bd69ee25b9ecf846b1n/a Gozi
2020-05-18n/aexe 92531c1c46721abadcbc92de961a40f50940f1409c31d84cbc8129ce860968e3n/aGozi
2020-05-18n/aexe a0234263181f538a0c71d57f65063eb9852c376379506dc1b748957213811f99n/a Gozi
2020-05-18n/aexe 0e909ad7cd718f5bd2f4f283b0aa36388cffdddc4de2c6bedc9d294468ac51d3n/a Gozi
2020-05-18n/aexe 2ec1c45aa899514a53bf12a21f779184c9a97fae773e631709bcbf13f5cc8640n/a Gozi
2020-05-18n/aexe 0381f7838fd04efc0f710eaee3c74cbde1a9856fe05f0bc75d182228ec27ece3n/a Gozi
2020-05-18n/aexe f22c9740a5c5feb820a95a2c75ecdf6d5b6c2dc994e912203bcd8213bdac76f7n/aGozi
2020-05-18n/aexe 22753a87c98b9c04471c489df668096f26dc5ca9948dc679219f3faf5bbba131n/a Gozi