ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain frescoporter.app.

Database Entry


IOC ID:1783820
IOC: frescoporter.app
IOC Type :domain
Threat Type :payload_delivery
Malware: SmartApeSG
Malware alias:HANEYMANEY, ZPHP
Confidence Level : Confidence level is moderate (50%)
Is compromised? : False
ASN:AS395092 SHOCK-1
Country:- US
First seen:2026-04-11 07:06:39 UTC
Last seen:never
UUID:249bf080-34dd-11f1-9af6-42010aa4000a
Reporter Lenny_3BO
Reward 5 credits from ThreatFox
Tags:ClickFix SmartApeSG

Avatar
Lenny_3BO
Stage 3 payload host. ZIP delivered via stage 2 PS script from 208.123.119.156. Served Webhook.zip via /agent endpoint. nginx/1.24.0. Payload expired as of 2026-04-10.