IOC Report
https://heiqi.xyz/

loading gif

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2516 --field-trial-handle=2476,i,986746230264088559,11832339230404725649,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://heiqi.xyz/"
malicious

URLs

Name
IP
Malicious
https://heiqi.xyz/
malicious
https://heiqi.xyz/
118.107.57.100
malicious

Domains

Name
IP
Malicious
heiqi.xyz
118.107.57.100
malicious
bg.microsoft.map.fastly.net
199.232.214.172
www.google.com
172.217.15.196
fp2e7a.wpc.phicdn.net
192.229.211.108

IPs

IP
Domain
Country
Malicious
118.107.57.100
heiqi.xyz
Singapore
malicious
239.255.255.250
unknown
Reserved
192.168.2.4
unknown
unknown
127.0.0.1
unknown
unknown
172.217.15.196
www.google.com
United States