Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
avastsgp.com
Domain ⚠ 15 PULSE HITS
↓ CSV ↓ JSON
40
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 40/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
30/30
15 pulses
VIRUSTOTAL
/35
N/A
ABUSEIPDB
/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
Indicatoravastsgp.com
Whois Domainhttp://whois.domaintools.com/avastsgp.com
Typedomain
AlienVault OTX Analysis ↗ View on OTX
15
PULSE HITS
Pulse Hits 15
Indicator Type Domain
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
Threat actor targeting UK banks in ongoing AnyDesk social engineering campaign 2024-08-09
TTC-CERT_blocklist_recommended 2025-01-12
PROSPERO & Proton66: Tracing Uncovering the links between bulletproof networks 2025-03-03
AVAST phishing 2025-01-19
StreamMining 2024-11-24
VirusTotal Analysis ↗ View on VirusTotal
⚠ VirusTotal rate limit reached. Try again shortly.
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ LISTED
URLHAUS
URLs Found 3
ASSOCIATED URLs
URL STATUS / TYPE DATE
https://avastsgp.com/Avastavv.apk offline 2024-06-30
https://avastsgp.com/AnyDesk.exe offline 2024-06-28
http://avastsgp.com/Avastavv.apk offline 2024-06-25