IOCReport

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\0TOEtGJHN8.exe
'C:\Users\user\Desktop\0TOEtGJHN8.exe'
malicious
C:\Windows\SysWOW64\KBDOGHAM\signdrv.exe
C:\Windows\SysWOW64\KBDOGHAM\signdrv.exe
malicious
C:\Windows\System32\svchost.exe
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s NgcSvc
clean
C:\Windows\System32\svchost.exe
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s NgcCtnrSvc
clean
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe -k netsvcs -p
clean
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe -k netsvcs -p
clean
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe -k netsvcs -p
clean
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe -k netsvcs -p
clean

URLs

Name
IP
Malicious
http://102.182.145.130/GW9pD1/
unknown
clean
http://173.173.254.105/eRt0rf/h47E/PPGzddI6qtwJHCcrLv/G
unknown
clean
http://www.g5e.com/G5_End_User_License_Supplemental_Terms
unknown
clean
https://support.g5e.com/hc/en-us/categories/360002985040-Hidden-City-Hidden-Object-Adventure
unknown
clean
http://173.63.222.65/9ZCmKiFO7uHPn84/3EvH6ueL/1JsHphUq/xlmyNF0tH4Btuub/$
unknown
clean
http://173.173.254.105/eRt0rf/h47E/PPGzddI6qtwJHCcrLv/
unknown
clean
http://173.173.254.105/eRt0rf/h47E/PPGzddI6qtwJHCcrLv/B
unknown
clean
http://173.63.222.65/9ZCmKiFO7uHPn84/3EvH6ueL/1JsHphUq/xlmyNF0tH4Btuub/
unknown
clean
https://corp.roblox.com/contact/
unknown
clean
https://www.roblox.com/develop
unknown
clean
http://51.89.199.141:8080/D9XLHb/nDTPEm8/mQcO7qSsE6DgkWRoP/5bBQ4sqVDIFS/KjX037lSEGPiO0wQmiO/%
unknown
clean
http://173.173.254.105/eRt0rf/h47E/PPGzddI6qtwJHCcrLv/4
unknown
clean
https://www.roblox.com/info/privacy
unknown
clean
http://crl.ver)
unknown
clean
http://www.g5e.com/termsofservice
unknown
clean
http://173.63.222.65/9ZCmKiFO7uHPn84/3EvH6ueL/1JsHphUq/xlmyNF0tH4Btuub/t
unknown
clean
https://www.tiktok.com/legal/report/feedback
unknown
clean
http://173.173.254.105/eRt0rf/h47E/PPGzddI6qtwJHCcrLv/p
unknown
clean
http://51.89.199.141:8080/D9XLHb/nDTPEm8/mQcO7qSsE6DgkWRoP/5bBQ4sqVDIFS/KjX037lSEGPiO0wQmiO/
unknown
clean
https://en.help.roblox.com/hc/en-us
unknown
clean
https://corp.roblox.com/parents/
unknown
clean
http://167.114.153.111:8080/Y8QcFjXY9mTwqEUtHZi/jo0m0vlpkUvB8EqBbI/fLIWQI1S3rZ/hVNDUF/QmsdwGh/1dNDF7
unknown
clean
http://173.63.222.65/9ZCmKiFO7uHPn84/3EvH6ueL/1JsHphUq/xlmyNF0tH4Btuub/~
unknown
clean
http://173.173.254.105/eRt0rf/h47E/PPGzddI6qtwJHCcrLv/J
unknown
clean
There are 14 hidden URLs, click here to show them.

IPs

IP
Domain
Country
Malicious
194.4.58.192
unknown
Kazakhstan
malicious
102.182.93.220
unknown
South Africa
malicious
95.9.5.93
unknown
Turkey
malicious
94.200.114.161
unknown
United Arab Emirates
malicious
72.186.136.247
unknown
United States
malicious
115.94.207.99
unknown
Korea Republic of
malicious
24.133.106.23
unknown
Turkey
malicious
89.121.205.18
unknown
Romania
malicious
216.139.123.119
unknown
United States
malicious
200.116.145.225
unknown
Colombia
malicious
172.105.13.66
unknown
United States
malicious
138.68.87.218
unknown
United States
malicious
220.245.198.194
unknown
Australia
malicious
67.170.250.203
unknown
United States
malicious
104.131.11.150
unknown
United States
malicious
176.111.60.55
unknown
Ukraine
malicious
24.178.90.49
unknown
United States
malicious
94.23.237.171
unknown
France
malicious
187.161.206.24
unknown
Mexico
malicious
41.185.28.84
unknown
South Africa
malicious
194.190.67.75
unknown
Russian Federation
malicious
186.74.215.34
unknown
Panama
malicious
109.116.245.80
unknown
Italy
malicious
202.134.4.216
unknown
Indonesia
malicious
120.150.218.241
unknown
Australia
malicious
202.134.4.211
unknown
Indonesia
malicious
87.106.139.101
unknown
Germany
malicious
62.30.7.67
unknown
United Kingdom
malicious
123.142.37.166
unknown
Korea Republic of
malicious
51.89.199.141
unknown
France
malicious
75.143.247.51
unknown
United States
malicious
49.3.224.99
unknown
Australia
malicious
162.241.140.129
unknown
United States
malicious
62.75.141.82
unknown
Germany
malicious
119.59.116.21
unknown
Thailand
malicious
172.91.208.86
unknown
United States
malicious
113.61.66.94
unknown
Australia
malicious
96.245.227.43
unknown
United States
malicious
37.139.21.175
unknown
Netherlands
malicious
194.187.133.160
unknown
Bulgaria
malicious
121.7.31.214
unknown
Singapore
malicious
112.185.64.233
unknown
Korea Republic of
malicious