IOC Report
http://pttroqtr.top/help

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sat Sep 28 02:39:18 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sat Sep 28 02:39:18 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sat Sep 28 02:39:18 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sat Sep 28 02:39:18 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sat Sep 28 02:39:18 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 196
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 197
Unicode text, UTF-8 text, with very long lines (4005)
downloaded
Chrome Cache Entry: 198
ASCII text, with very long lines (32033)
downloaded
Chrome Cache Entry: 199
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 200
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 201
ASCII text, with very long lines (52146)
dropped
Chrome Cache Entry: 202
MS Windows icon resource - 1 icon, 32x19, 32 bits/pixel
downloaded
Chrome Cache Entry: 203
ASCII text, with very long lines (1965), with no line terminators
downloaded
Chrome Cache Entry: 204
JSON data
dropped
Chrome Cache Entry: 205
Unicode text, UTF-8 text, with very long lines (65482), with no line terminators
dropped
Chrome Cache Entry: 206
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 207
ASCII text, with very long lines (39147)
downloaded
Chrome Cache Entry: 208
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 209
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 210
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 211
Unicode text, UTF-8 text, with very long lines (17553), with no line terminators
downloaded
Chrome Cache Entry: 212
ASCII text, with very long lines (322)
downloaded
Chrome Cache Entry: 213
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 214
Unicode text, UTF-8 text, with very long lines (6082), with no line terminators
dropped
Chrome Cache Entry: 215
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 216
ASCII text, with very long lines (17840), with no line terminators
downloaded
Chrome Cache Entry: 217
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 218
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 219
ASCII text, with very long lines (301)
downloaded
Chrome Cache Entry: 220
ASCII text, with very long lines (35443), with no line terminators
dropped
Chrome Cache Entry: 221
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 222
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 223
Unicode text, UTF-8 text, with very long lines (59842), with no line terminators
downloaded
Chrome Cache Entry: 224
PNG image data, 411 x 254, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 225
Unicode text, UTF-8 text, with very long lines (18369)
downloaded
Chrome Cache Entry: 226
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 227
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 228
ASCII text, with very long lines (554)
downloaded
Chrome Cache Entry: 229
Unicode text, UTF-8 text, with very long lines (65329), with no line terminators
downloaded
Chrome Cache Entry: 230
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 231
HTML document, ASCII text, with very long lines (435)
downloaded
Chrome Cache Entry: 232
Unicode text, UTF-8 text, with very long lines (65482), with no line terminators
downloaded
Chrome Cache Entry: 233
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 234
ASCII text, with very long lines (4086)
dropped
Chrome Cache Entry: 235
Unicode text, UTF-8 text, with very long lines (65482), with no line terminators
downloaded
Chrome Cache Entry: 236
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 237
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 238
Unicode text, UTF-8 text, with very long lines (17553), with no line terminators
dropped
Chrome Cache Entry: 239
ASCII text, with very long lines (6251)
dropped
Chrome Cache Entry: 240
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 241
ASCII text
downloaded
Chrome Cache Entry: 242
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 243
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 244
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 245
ASCII text, with very long lines (16738)
dropped
Chrome Cache Entry: 246
JSON data
dropped
Chrome Cache Entry: 247
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 248
ASCII text, with very long lines (35443), with no line terminators
downloaded
Chrome Cache Entry: 249
ASCII text, with very long lines (1965), with no line terminators
dropped
Chrome Cache Entry: 250
ASCII text, with very long lines (56758)
dropped
Chrome Cache Entry: 251
ASCII text, with very long lines (8249), with no line terminators
downloaded
Chrome Cache Entry: 252
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 253
ASCII text, with very long lines (6026)
downloaded
Chrome Cache Entry: 254
ASCII text, with very long lines (16738)
downloaded
Chrome Cache Entry: 255
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 256
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 257
JSON data
downloaded
Chrome Cache Entry: 258
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 259
ASCII text, with very long lines (7518)
downloaded
Chrome Cache Entry: 260
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 261
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 262
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 263
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 264
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 265
ASCII text, with very long lines (31998)
dropped
Chrome Cache Entry: 266
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 267
ASCII text, with very long lines (31998)
downloaded
Chrome Cache Entry: 268
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
dropped
Chrome Cache Entry: 269
ASCII text, with very long lines (11524)
dropped
Chrome Cache Entry: 270
ASCII text, with very long lines (52146)
downloaded
Chrome Cache Entry: 271
ASCII text, with very long lines (8249), with no line terminators
dropped
Chrome Cache Entry: 272
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 273
Unicode text, UTF-8 text, with very long lines (31081), with no line terminators
dropped
Chrome Cache Entry: 274
ASCII text, with very long lines (56758)
downloaded
Chrome Cache Entry: 275
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 276
JSON data
dropped
Chrome Cache Entry: 277
ASCII text, with very long lines (2711), with no line terminators
dropped
Chrome Cache Entry: 278
ASCII text, with very long lines (399)
downloaded
Chrome Cache Entry: 279
ASCII text, with very long lines (3653)
downloaded
Chrome Cache Entry: 280
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 281
ASCII text, with very long lines (1892), with no line terminators
downloaded
Chrome Cache Entry: 282
ASCII text, with very long lines (39101), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 283
Web Open Font Format, TrueType, length 333588, version 1.0
downloaded
Chrome Cache Entry: 284
ASCII text, with very long lines (3185)
downloaded
Chrome Cache Entry: 285
Unicode text, UTF-8 text, with very long lines (6082), with no line terminators
downloaded
Chrome Cache Entry: 286
ASCII text, with very long lines (6251)
downloaded
Chrome Cache Entry: 287
ASCII text, with very long lines (1732)
downloaded
Chrome Cache Entry: 288
ASCII text, with very long lines (1732)
dropped
Chrome Cache Entry: 289
ASCII text, with very long lines (1798)
downloaded
Chrome Cache Entry: 290
Unicode text, UTF-8 text, with very long lines (18369)
dropped
Chrome Cache Entry: 291
ASCII text
downloaded
Chrome Cache Entry: 292
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 293
ASCII text, with very long lines (5945)
downloaded
Chrome Cache Entry: 294
ASCII text, with very long lines (1796)
downloaded
Chrome Cache Entry: 295
Web Open Font Format, TrueType, length 62844, version 1.0
downloaded
Chrome Cache Entry: 296
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 297
PNG image data, 590 x 351, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 298
JSON data
dropped
Chrome Cache Entry: 299
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 300
ASCII text, with very long lines (8553)
dropped
Chrome Cache Entry: 301
ASCII text, with very long lines (1796)
dropped
Chrome Cache Entry: 302
ASCII text, with very long lines (8553)
downloaded
Chrome Cache Entry: 303
ASCII text, with very long lines (554)
dropped
Chrome Cache Entry: 304
ASCII text, with very long lines (847)
downloaded
Chrome Cache Entry: 305
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 306
JSON data
dropped
Chrome Cache Entry: 307
Web Open Font Format (Version 2), TrueType, length 117372, version 773.768
downloaded
Chrome Cache Entry: 308
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 309
ASCII text, with very long lines (39147)
dropped
Chrome Cache Entry: 310
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 311
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 312
PNG image data, 411 x 254, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 313
ASCII text, with very long lines (2711), with no line terminators
downloaded
Chrome Cache Entry: 314
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 315
ASCII text, with very long lines (951)
downloaded
Chrome Cache Entry: 316
ASCII text, with very long lines (6570)
dropped
Chrome Cache Entry: 317
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 318
Unicode text, UTF-8 (with BOM) text, with CRLF, CR line terminators
downloaded
Chrome Cache Entry: 319
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 320
JSON data
dropped
Chrome Cache Entry: 321
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 322
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 323
Unicode text, UTF-8 text, with very long lines (65329), with no line terminators
dropped
Chrome Cache Entry: 324
Unicode text, UTF-8 text, with very long lines (4650), with no line terminators
downloaded
Chrome Cache Entry: 325
ASCII text, with very long lines (5945)
dropped
Chrome Cache Entry: 326
ASCII text, with very long lines (32033)
dropped
Chrome Cache Entry: 327
ASCII text, with very long lines (41188)
downloaded
Chrome Cache Entry: 328
Web Open Font Format (Version 2), TrueType, length 156496, version 773.768
downloaded
Chrome Cache Entry: 329
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 330
Unicode text, UTF-8 text, with very long lines (31081), with no line terminators
downloaded
Chrome Cache Entry: 331
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 332
PNG image data, 2256 x 870, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 333
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 334
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 335
JSON data
dropped
Chrome Cache Entry: 336
ASCII text, with very long lines (4086)
downloaded
Chrome Cache Entry: 337
JSON data
dropped
Chrome Cache Entry: 338
ASCII text, with very long lines (6570)
downloaded
Chrome Cache Entry: 339
ASCII text, with very long lines (1892), with no line terminators
dropped
Chrome Cache Entry: 340
Unicode text, UTF-8 text, with very long lines (59842), with no line terminators
dropped
Chrome Cache Entry: 341
Unicode text, UTF-8 text, with very long lines (4650), with no line terminators
dropped
Chrome Cache Entry: 342
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 343
ASCII text, with very long lines (32023)
dropped
Chrome Cache Entry: 344
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 345
ASCII text
downloaded
Chrome Cache Entry: 346
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 347
JSON data
dropped
Chrome Cache Entry: 348
ASCII text, with very long lines (7518)
dropped
Chrome Cache Entry: 349
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 350
ASCII text, with very long lines (22359)
downloaded
Chrome Cache Entry: 351
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
downloaded
Chrome Cache Entry: 352
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 353
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 354
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 355
ASCII text, with very long lines (3653)
dropped
Chrome Cache Entry: 356
OpenType font data
downloaded
Chrome Cache Entry: 357
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 358
PNG image data, 1772 x 945, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 359
Web Open Font Format (Version 2), TrueType, length 16692, version 1.0
downloaded
Chrome Cache Entry: 360
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 361
ASCII text, with very long lines (11524)
downloaded
Chrome Cache Entry: 362
PNG image data, 1772 x 945, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 363
ASCII text, with very long lines (32023)
downloaded
Chrome Cache Entry: 364
PNG image data, 2256 x 870, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 365
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 366
Unicode text, UTF-8 text, with very long lines (4005)
dropped
Chrome Cache Entry: 367
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 368
JSON data
downloaded
Chrome Cache Entry: 369
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 370
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 371
MS Windows icon resource - 1 icon, 32x19, 32 bits/pixel
dropped
Chrome Cache Entry: 372
Web Open Font Format, TrueType, length 63712, version 1.0
downloaded
Chrome Cache Entry: 373
ASCII text, with very long lines (17840), with no line terminators
dropped
Chrome Cache Entry: 374
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 375
JSON data
dropped
Chrome Cache Entry: 376
JSON data
dropped
Chrome Cache Entry: 377
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 378
Unicode text, UTF-8 text, with very long lines (65482), with no line terminators
dropped
Chrome Cache Entry: 379
JSON data
downloaded
Chrome Cache Entry: 380
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 381
ASCII text, with very long lines (1798)
dropped
Chrome Cache Entry: 382
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 383
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 384
PNG image data, 590 x 351, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 385
PNG image data, 625 x 417, 8-bit/color RGBA, non-interlaced
downloaded
There are 187 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2148 --field-trial-handle=1636,i,8772611216806412330,10793707389040936366,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://pttroqtr.top/help"

URLs

Name
IP
Malicious
http://pttroqtr.top/help
malicious
http://pttroqtr.top/help
8.211.203.165
malicious
https://www.ptt.gov.tr/_next/static/chunks/5698-10f078fe5b68f680.js
185.220.152.26
http://fontawesome.io
unknown
https://stats.g.doubleclick.net/g/collect
unknown
https://www.ptt.gov.tr/_next/static/chunks/pages/_error-32d9baaae5c99c79.js
185.220.152.26
https://www.ptt.gov.tr/_next/static/3nPo4dxLHf5a0RshtsAsa/_middlewareManifest.js
185.220.152.26
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjeFl&sid=ZtwaiGyEO0D_jrEhAEf6
8.211.203.165
https://pttroqtr.top/help/layout/images/53.png
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjcVq&sid=H_Y22m0FJjANkstPAEf3
8.211.203.165
https://pttroqtr.top/help/assets/f18e42bakFGym.woff
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjcG1&sid=H_Y22m0FJjANkstPAEf3
8.211.203.165
https://chatserver.alo-tech.com/static/assets/js/ua-parser.min.js
34.107.233.18
http://jqueryui.com
unknown
https://pttroqtr.top/help/layout/images/45.png
8.211.203.165
https://chatserver.alo-tech.com/static/assets/bootstrap/css/bootstrap.min.css
34.107.233.18
https://pttem.alo-tech.com/storage/media?gcs_file_name=chat/chat_icons/3af51a49-058b-4e67-9af9-1575813efeeb.png&chat_icon=true
35.201.78.44
https://www.ptt.gov.tr/Sayfalar/Kargo/AmbalajHizmetleri.aspx
https://pttroqtr.top/help/assets/c16a2af0JxKnW.js
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjcF_&sid=H_Y22m0FJjANkstPAEf3
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjcVA&sid=H_Y22m0FJjANkstPAEf3
8.211.203.165
https://www.ptt.gov.tr/_next/static/media/OmnesRegular.2b095194.otf
185.220.152.26
https://chatserver.alo-tech.com/static/assets/js/owl.carousel.min.js
34.107.233.18
http://creativecommons.org/licenses/by/3.0/
unknown
http://opensource.org/licenses/mit-license.html
unknown
https://www.ptt.gov.tr/_next/static/chunks/pages/index-81bebd65698c8415.js
185.220.152.26
https://www.ptt.gov.tr/favicon.ico
185.220.152.26
https://pttroqtr.top/socket.io/?EIO=4&transport=websocket&sid=H_Y22m0FJjANkstPAEf3
8.211.203.165
https://pttroqtr.top/help/layout/images/37.png
8.211.203.165
https://www.ptt.gov.tr/Sayfalar/Kargo/PttYurtIciKargoHizmetleri.aspx
https://fontawesome.com
unknown
https://www.google.com
unknown
https://pttroqtr.top/socket.io/?EIO=4&transport=websocket&sid=ZtwaiGyEO0D_jrEhAEf6
8.211.203.165
http://www.opensource.org/licenses/mit-license.php
unknown
https://pttroqtr.top/api/MC42NDcxMDI1MjYyOTk4MDM0
8.211.203.165
https://chatserver.alo-tech.com/static/assets/img/microphone_open.svg
34.107.233.18
http://twitter.com/fontawesome.
unknown
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjfG8&sid=DijwWc-tALPoXXo3AEf9
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=websocket&sid=DijwWc-tALPoXXo3AEf9
8.211.203.165
https://www.ptt.gov.tr/_next/static/chunks/pages/doviz-kurlari-5a26b114db728c07.js
185.220.152.26
https://www.ptt.gov.tr/_next/image?url=%2F_next%2Fstatic%2Fmedia%2Ffooter-logo.568f7be2.png&w=1080&q=75
185.220.152.26
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjawy&sid=xZsOXWwlpa9sZhJdAEf0
8.211.203.165
https://www.ptt.gov.tr/_next/static/css/21ec1dd6e7fd01ba.css
185.220.152.26
https://www.ptt.gov.tr/_next/static/3nPo4dxLHf5a0RshtsAsa/_ssgManifest.js
185.220.152.26
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjg1S
8.211.203.165
http://getbootstrap.com)
unknown
https://pttroqtr.top/help
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjjxx
8.211.203.165
https://www.ptt.gov.tr/_next/static/css/81d8b40497d071a4.css
185.220.152.26
http://twitter.com/byscuits
unknown
https://pttroqtr.top/help/layout/images/43.png
8.211.203.165
https://chatserver.alo-tech.com/static/assets/js/jquery-2.0.3.min.js
34.107.233.18
https://chatserver.alo-tech.com/static/assets/bootstrap/js/bootstrap.min.js
34.107.233.18
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sji3E&sid=PAIOn2iXLFZsVKTaAEgA
8.211.203.165
https://pttroqtr.top/help/assets/77985128JxKnW.js
8.211.203.165
https://pttroqtr.top/help/assets/c27b6911JxKnW.js
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjjZg&sid=r_NtitDKgtItMN5FAEgD
8.211.203.165
https://pttem.alo-tech.com/chat/alochat.js?widget_key=ahRzfm11c3RlcmktaGl6bWV0bGVyaXIYCxILQ2hhdFdpZGdldHMYgICk1cbTrwgMogEScHR0ZW0uYWxvLXRlY2guY29t
35.201.78.44
https://www.ptt.gov.tr/_next/static/chunks/4110-03c15b7eaf980721.js
185.220.152.26
https://pttroqtr.top/favicon.ico
8.211.203.165
https://pttroqtr.top/help/assets/2dd339f2kFGym.css
8.211.203.165
https://pttroqtr.top/help/layout/images/39.png
8.211.203.165
https://www.ptt.gov.tr/_next/static/chunks/framework-0438cefc59f69f60.js
185.220.152.26
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjhL-&sid=PAIOn2iXLFZsVKTaAEgA
8.211.203.165
http://kyruus.com
unknown
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjc6P
8.211.203.165
http://ianlunn.github.io/Hover/)
unknown
https://github.com/joewalnes/reconnecting-websocket/
unknown
https://chatserver.alo-tech.com/static/assets/img/microphone_close.svg
34.107.233.18
https://chatserver.alo-tech.com/static/assets/css/google_fonts.css
34.107.233.18
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjih1&sid=r_NtitDKgtItMN5FAEgD
8.211.203.165
https://pttroqtr.top/api/MC40NjgzNzc3MjY1OTI2NzY3NA==
8.211.203.165
https://chatserver.alo-tech.com/static/assets/img/down_button.svg
34.107.233.18
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjh46&sid=PAIOn2iXLFZsVKTaAEgA
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjigq&sid=r_NtitDKgtItMN5FAEgD
8.211.203.165
https://www.ptt.gov.tr/_next/static/media/fa-solid-900.ce4938a3.woff2
185.220.152.26
https://chatserver.alo-tech.com/static/assets/css/page_spa.css
34.107.233.18
https://pttroqtr.top/help/layout/images/41.png
8.211.203.165
https://pttroqtr.top/help/layout/images/33.png
8.211.203.165
https://cct.google/taggy/agent.js
unknown
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjdTo&sid=ZtwaiGyEO0D_jrEhAEf6
8.211.203.165
https://www.ptt.gov.tr/_next/static/css/386d6f9094f2dfbc.css
185.220.152.26
https://chatserver.alo-tech.com/static/assets/js/linkify.min.js
34.107.233.18
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjgdd&sid=PAIOn2iXLFZsVKTaAEgA
8.211.203.165
https://pttroqtr.top/api/MC45ODQ1NjY2NzE5MzU4MDAy
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjax1&sid=xZsOXWwlpa9sZhJdAEf0
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjj2E&sid=r_NtitDKgtItMN5FAEgD
8.211.203.165
http://ianlunn.co.uk/
unknown
https://github.com/twbs/bootstrap/blob/master/LICENSE)
unknown
https://pttroqtr.top/help/layout/images/48.png
8.211.203.165
https://pttroqtr.top/help/assets/2e158738kFGym.woff
8.211.203.165
https://github.com/IanLunn/Hover
unknown
https://pttroqtr.top/help/assets/f3c7e6fbJxKnW.js
8.211.203.165
https://github.com/faisalman/ua-parser-js
unknown
https://pttroqtr.top/help/layout/images/52.png
8.211.203.165
https://www.ptt.gov.tr/_next/static/chunks/pages/%5Bslug%5D-88e5a3b326ec670d.js
185.220.152.26
https://pttroqtr.top/help/assets/09bf01f8JxKnW.js
8.211.203.165
https://pttroqtr.top/help/layout/images/35.png
8.211.203.165
https://pttem.alo-tech.com/chat/get_my_widget_settings?widget_key=ahRzfm11c3RlcmktaGl6bWV0bGVyaXIYCxILQ2hhdFdpZGdldHMYgICk1cbTrwgMogEScHR0ZW0uYWxvLXRlY2guY29t&escapeHtml=false
35.201.78.44
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjiTg
8.211.203.165
https://pttroqtr.top/socket.io/?EIO=4&transport=polling&t=P8sjep5&sid=DijwWc-tALPoXXo3AEf9
8.211.203.165
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.210.172
lb-p3.alo-tech.com
35.201.78.44
pttroqtr.top
8.211.203.165
netdna.bootstrapcdn.com
104.18.11.207
chat-server.alo-tech.com
34.107.233.18
www.google.com
142.250.185.132
fp2e7a.wpc.phicdn.net
192.229.221.95
www.ptt.gov.tr
185.220.152.26
windowsupdatebg.s.llnwi.net
87.248.205.0
chatserver.alo-tech.com
unknown
pttem.alo-tech.com
unknown
service-edge.alo-tech.com
unknown
There are 2 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
34.107.233.18
chat-server.alo-tech.com
United States
8.211.203.165
pttroqtr.top
Singapore
142.250.185.132
www.google.com
United States
185.220.152.26
www.ptt.gov.tr
Turkey
192.168.2.6
unknown
unknown
192.168.2.5
unknown
unknown
35.201.78.44
lb-p3.alo-tech.com
United States
104.18.11.207
netdna.bootstrapcdn.com
United States
239.255.255.250
unknown
Reserved

DOM / HTML

URL
Malicious
https://pttroqtr.top/help/
https://pttroqtr.top/help/
https://pttroqtr.top/help/
https://pttroqtr.top/help/
https://pttroqtr.top/help/
https://www.ptt.gov.tr/Sayfalar/Posta/DigerPostaIslemleriUst.aspx
https://www.ptt.gov.tr/Sayfalar/Posta/DigerPostaIslemleriUst.aspx
https://www.ptt.gov.tr/Sayfalar/Posta/DigerPostaIslemleriUst.aspx
https://www.ptt.gov.tr/Sayfalar/Posta/PulVeFilateliUst.aspx
https://www.ptt.gov.tr/Sayfalar/Posta/UETS.aspx
https://www.ptt.gov.tr/Sayfalar/Posta/UETS.aspx
https://www.ptt.gov.tr/Sayfalar/Posta/UETS.aspx
https://www.ptt.gov.tr/Sayfalar/Posta/KayitliElektronikPosta.aspx
https://www.ptt.gov.tr/Sayfalar/Posta/KayitliElektronikPosta.aspx
https://www.ptt.gov.tr/Sayfalar/Kargo/PttYurtIciKargoHizmetleri.aspx
https://www.ptt.gov.tr/Sayfalar/Kargo/PttYurtIciKargoHizmetleri.aspx
https://www.ptt.gov.tr/Sayfalar/Kargo/PttYurtDisiKargoHizmetleriUst.aspx
https://www.ptt.gov.tr/Sayfalar/Kargo/PttYurtDisiKargoHizmetleriUst.aspx
https://www.ptt.gov.tr/Sayfalar/Banka/PttKartPttMatikUst.aspx
https://www.ptt.gov.tr/Sayfalar/Banka/PttKartPttMatikUst.aspx
https://www.ptt.gov.tr/Sayfalar/Kargo/AmbalajHizmetleri.aspx
https://www.ptt.gov.tr/Sayfalar/Banka/OdemeIslemleriUst.aspx
There are 12 hidden doms, click here to show them.