IOC Report
https://notascam.lol/ATB/index.php

loading gif

Processes

Path
Cmdline
Malicious
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1444 --field-trial-handle=1244,i,7575551553456251623,2389276529595666218,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "https://notascam.lol/ATB/index.php"
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1408 --field-trial-handle=1252,i,11435284649484426301,14648388080793655181,131072 /prefetch:8
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2768 --field-trial-handle=1252,i,11435284649484426301,14648388080793655181,131072 /prefetch:8

Domains

Name
IP
Malicious
google.com
142.250.10.113
www.google.com
142.251.117.103
notascam.lol
unknown

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
142.251.117.104
unknown
United States
142.251.117.103
www.google.com
United States
192.168.2.7
unknown
unknown
192.168.2.255
unknown
unknown