IOC LOOKUP
// SEARCH IP, DOMAIN, HASH, OR URL AGAINST OTX THREAT INTELLIGENCE
Indicator of Compromise Search
✦ IPv4 Address
✦ Domain
✦ MD5/SHA1/SHA256 Hash
✦ URL
INDICATOR
https://besttennisreviews.com/exe/index.php
45
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM
45/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN
LOW
MED
HIGH
CRIT
0
25
50
75
100
OTX
10/30
2 pulses
VIRUSTOTAL
25/35
9/90 detected
ABUSEIPDB
—/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
No additional detail available for this indicator type.
AlienVault OTX Analysis
↗ View on OTX
2
PULSE HITS
| Pulse Hits | 2 |
| Indicator Type | URL |
| Threat Level |
ASSOCIATED PULSES
| PULSE NAME | DATE |
|---|---|
| 2022-12-19 | |
| 2022-12-19 |
VirusTotal Analysis
↗ View on VirusTotal
9/90
DETECTIONS
MALICIOUS
| Malicious | 9 |
| Suspicious | 1 |
| Harmless | 63 |
| Undetected | 17 |
| Reputation | 0 |
TOP DETECTIONS
| VENDOR | RESULT |
|---|---|
| ArcSight Threat Intelligence | suspicious |
| Avira | malware |
| CRDF | malicious |
| ESET | malware |
| Forcepoint ThreatSeeker | malicious |
| Fortinet | malware |
| Lionic | malicious |
| Lumu | malware |
| Sophos | malware |
| Webroot | malicious |
URLhaus (abuse.ch)
↗ View on URLhaus
⚠ LISTED
URLHAUS
malware_download
BB10isont005QakbotqbotQuakbotTRzip
| Status | OFFLINE |
| Date Added | 2022-12-14 |
| Last Online | 2022-12-16 |
| Host | besttennisreviews.com |
| Reporter | Cryptolaemus1 |