IOC Report
http://etbcor.com/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 100
PNG image data, 728 x 90, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 101
ASCII text
downloaded
Chrome Cache Entry: 102
PNG image data, 728 x 90, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 103
ASCII text
downloaded
Chrome Cache Entry: 104
PNG image data, 728 x 90, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 105
PNG image data, 728 x 90, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 106
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 107
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 108
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 109
PNG image data, 225 x 225, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 110
ASCII text
downloaded
Chrome Cache Entry: 111
PNG image data, 728 x 90, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 112
PNG image data, 728 x 90, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 113
JSON data
downloaded
Chrome Cache Entry: 114
PNG image data, 1920 x 1080, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 115
Web Open Font Format (Version 2), TrueType, length 28600, version 1.0
downloaded
Chrome Cache Entry: 116
MS Windows icon resource - 1 icon, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 117
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 118
PNG image data, 728 x 90, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 119
ASCII text
dropped
Chrome Cache Entry: 120
HTML document, Unicode text, UTF-8 text
downloaded
Chrome Cache Entry: 121
PNG image data, 728 x 90, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 122
PNG image data, 1920 x 1080, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 123
WebM
downloaded
Chrome Cache Entry: 124
PNG image data, 728 x 90, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 125
ASCII text, with very long lines (6321), with no line terminators
downloaded
Chrome Cache Entry: 126
ASCII text
downloaded
Chrome Cache Entry: 127
MS Windows icon resource - 1 icon, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 128
GIF image data, version 89a, 600 x 80
downloaded
Chrome Cache Entry: 129
PNG image data, 720 x 90, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 130
ASCII text
dropped
Chrome Cache Entry: 131
ASCII text
downloaded
Chrome Cache Entry: 132
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 133
WebAssembly (wasm) binary module version 0x1 (MVP)
downloaded
Chrome Cache Entry: 134
PNG image data, 728 x 90, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 73
WebM
downloaded
Chrome Cache Entry: 74
PNG image data, 728 x 90, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 75
JPEG image data, JFIF standard 1.01, aspect ratio, density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=2, orientation=upper-left], baseline, precision 8, 728x90, components 3
dropped
Chrome Cache Entry: 76
PNG image data, 720 x 90, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 77
PNG image data, 728 x 90, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 78
ASCII text
downloaded
Chrome Cache Entry: 79
JPEG image data, JFIF standard 1.01, aspect ratio, density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=2, orientation=upper-left], baseline, precision 8, 728x90, components 3
downloaded
Chrome Cache Entry: 80
Web Open Font Format (Version 2), TrueType, length 17668, version 1.0
downloaded
Chrome Cache Entry: 81
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 82
JSON data
dropped
Chrome Cache Entry: 83
PNG image data, 225 x 225, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 84
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 85
PNG image data, 200 x 100, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 86
HTML document, ASCII text, with very long lines (64172)
downloaded
Chrome Cache Entry: 87
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 88
PNG image data, 728 x 90, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 89
PNG image data, 200 x 100, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 90
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 91
ASCII text
downloaded
Chrome Cache Entry: 92
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 93
GIF image data, version 89a, 600 x 80
dropped
Chrome Cache Entry: 94
Web Open Font Format (Version 2), TrueType, length 20028, version 1.0
downloaded
Chrome Cache Entry: 95
PNG image data, 728 x 90, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 96
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 97
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 98
ASCII text
dropped
Chrome Cache Entry: 99
WebM
downloaded
There are 53 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2544 --field-trial-handle=2000,i,13419774003531468316,12391563882741756701,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://etbcor.com/"
malicious

URLs

Name
IP
Malicious
http://etbcor.com/
https://etbcor.com/assets/music-icon.png
66.241.125.233
https://goofysillygoober.neocities.org/
unknown
https://docs.google.com/document/d/1GftbtvxikDQJKmtmB_CxXItjxTgmg717FeecBS9Qd8M/preview#21:
unknown
https://exlitry.world
unknown
https://mldkyt.nekoweb.org
unknown
https://coolbugs.win
unknown
https://etbcor.com/assets/o-tawa-insa.svg
66.241.125.233
https://docs.google.com/document/d/163dd0cseeR3qIpuRXlWZQClEbuLEAj3W7KRoXIo0b74/previewijo
unknown
https://mothcore.neocities.org/
unknown
https://sad.ovh
unknown
https://leilukin.com/
unknown
https://speyllsite.pages.dev/
unknown
https://open.spotify.com/embed/playlist/?utm_source=generator
unknown
https://soopy.moe/
unknown
https://etbcor.com/assets/ur-ad-here.png
66.241.125.233
https://docs.google.com/document/d/1AKLB6ddvDsr2SYZ-5W-mf7d48rUrmbrvEpM4cEuGB8s/preview#16:
unknown
https://maven.pages.gay
unknown
https://codingotaku.com
unknown
https://etbcor.com/assets/itan.svg
66.241.125.233
https://colab.research.google.com/drive/1zQtt-kDBhycueP_qyhzc9VnFeZe0wPmu?usp=sharingColab
unknown
https://foreverliketh.is/
unknown
https://ilokali.neocities.org/
unknown
https://john.citrons.xyz/static/img/incdec.png
45.19.50.151
https://asnev.neocities.org/
unknown
https://manyface.neocities.org/
unknown
https://etbcor.com/assets/favicon.ico
66.241.125.233
https://owencompher.me
unknown
https://enky.neocities.org
unknown
https://freya.cat
unknown
https://github.com/ETBCOR/cs475https://catalog.uidaho.edu/courses/cs/#:~:text=CS%20480&text=CS%20481
unknown
https://www.blitzw.in/
unknown
https://hollenreiter.neocities.org
unknown
https://tripixel.neocities.org
unknown
https://graystea.neocities.org/
unknown
https://etbcor.com/assets/ale-li-pona.gif
66.241.125.233
https://reiyua.neocities.org
unknown
https://iluvwerewolves.nekoweb.org/
unknown
https://john.citrons.xyz/embed?ref=etbcor.commax-height:
unknown
https://redcircle.com/shows/kalama-sin/tp/kalama_sinKalamaSinWindowpadding:
unknown
https://docs.google.com/document/d/e/2PACX-1vSE37sqz6LfD4F0KgIAh9OQXr5zc9yQJVu8Fxfr3gm89fjMyvk7HCkkP
unknown
https://www.thecozy.cat/
unknown
https://john.citrons.xyz/static/img/hpage-3.png
45.19.50.151
https://webring.bucketfish.me/embed.html?name=etbcorbucket-webringwidth:
unknown
https://ambylastname.xyz/
unknown
https://nat.envs.sh/
unknown
https://blog.darylsun.page/
unknown
https://www.youtube.com/playlist?list=PLjOmpMyMxd8Qs2mAXcLk817tQy_AQj09ulon
unknown
https://akbatten.com
unknown
https://docs.rs/getrandom#nodejs-es-module-supportcrypto
unknown
https://patrickwu.space/
unknown
https://kulupu.pona.la/kulupu
unknown
https://docs.google.com/document/d/11rCtIptD3cQybXXYDv2S8ozZINYdIPx96BDM1yE2OU8/preview
unknown
https://larsfrommars.neocities.org
unknown
https://www.youtube.com/
unknown
https://loading.io/
unknown
https://milkyway.moe/
unknown
https://pnda.space
unknown
https://www.github.com/ETBCORGitHub.
unknown
https://www.aketawi.space/
unknown
https://eleboog.com
unknown
https://dogspit.nekoweb.org
unknown
https://rainmirage.neocities.org/
unknown
https://jacekpoz.pl
unknown
https://tiagorangel.com/?ref=bucketfish
unknown
http://etbcor.com/
66.241.125.233
https://austinhuang.me
unknown
https://markasspandi.pl
unknown
https://authen.neocities.org/
unknown
https://docs.google.com/document/d/16k38wjGkXUfVYK2Q4fpcyzbf0k_rTQ6oei4IJ9-Xob4/preview#17:
unknown
https://bassdrop.club/
unknown
https://drive.google.com/file/d/12o5aSATedS28eJwsHIOHR7uf3DdZY20V/previewhere).
unknown
https://seirdy.one/
unknown
https://remblanc.nekoweb.org/
unknown
https://milliewebby.neocities.org/
unknown
https://cloudhiker.neocities.org
unknown
https://lipukule.org/post/2021/03/14/o-lukin-ala-e-monsi/#6:
unknown
https://mormoroi.com/
unknown
https://docs.google.com/document/d/e/2PACX-1vTYQAKHmNWVFqnKfr9Z7Zen09agJQUJiQLfMZyTvJ_-0OU9juZ1FNNKg
unknown
https://3tnl.dev
unknown
https://bee.nekoweb.org/
unknown
https://skyhold.org/
unknown
https://github.com/ETBCOR/cs470/tree/master/proj1https://drive.google.com/file/d/1fK-F2X7uwnOk8CrDos
unknown
https://docs.google.com/document/d/1a_zfXHqrSiRb8j5cR4RKfi1ZTx9ksoKyqQmN1OeqBXs/preview#20:
unknown
https://lime360.neocities.org/
unknown
https://tarraxahum.neocities.org/
unknown
https://cobyzaby.neocities.org/
unknown
http://www.gimp.org/xmp/
unknown
https://agar.neocities.org
unknown
https://github.com/ETBCOR/nasin-nanpaI
unknown
https://u1trav101.net/
unknown
https://cajecks-lair.neocities.org/
unknown
https://docs.google.com/document/d/e/2PACX-1vTPBeABxXHIWTk_i-4csAasUVFdKaAXGUcMi_R0ETo7zs4hW17AoZDA9
unknown
https://etbcor.com/assets/music-icon.webm
66.241.125.233
https://pinkpasture.neocities.org/
unknown
https://hyena.network/geocity/
unknown
https://sus.fr/
unknown
https://a-quiet-room.neocities.org/
unknown
https://kulijo.neocities.org/
unknown
https://www.hansenphotonics.com/Hansen
unknown
https://home.illuc.xyz/
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
john.citrons.xyz
45.19.50.151
malicious
bg.microsoft.map.fastly.net
199.232.214.172
bucketfish.github.io
185.199.111.153
raw.githubusercontent.com
185.199.110.133
etbcor.com
66.241.125.233
www.google.com
142.250.185.68
fp2e7a.wpc.phicdn.net
192.229.221.95
s-part-0032.t-0009.t-msedge.net
13.107.246.60
goatcounter.netlify.com
52.58.254.253
etbcor.goatcounter.com
135.181.139.209
gc.zgo.at
unknown
webring.bucketfish.me
unknown
There are 2 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
45.19.50.151
john.citrons.xyz
United States
malicious
142.250.185.68
www.google.com
United States
66.241.125.233
etbcor.com
United States
192.168.2.4
unknown
unknown
185.199.111.153
bucketfish.github.io
Netherlands
18.192.94.96
unknown
United States
192.168.2.6
unknown
unknown
192.168.2.5
unknown
unknown
52.58.254.253
goatcounter.netlify.com
United States
239.255.255.250
unknown
Reserved
185.199.109.133
unknown
Netherlands
135.181.139.209
etbcor.goatcounter.com
Germany
185.199.108.153
unknown
Netherlands
185.199.110.133
raw.githubusercontent.com
Netherlands
There are 4 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://etbcor.com/
https://etbcor.com/
https://etbcor.com/
https://etbcor.com/
https://etbcor.com/
https://etbcor.com/
https://etbcor.com/
https://etbcor.com/
https://etbcor.com/
https://etbcor.com/
https://etbcor.com/
https://etbcor.com/
There are 2 hidden doms, click here to show them.