ThreatFox IOC Database
You are viewing the ThreatFox database entry for domain repack-games.com.
Database Entry
| IOC ID: | 1837339 |
|---|---|
| IOC: | repack-games.com |
| IOC Type : | domain |
| Threat Type : | payload_delivery |
| Malware: | 5.t Downloader |
| Confidence Level : | Confidence level is high (100%) |
| Is compromised? : | False |
| ASN: | AS13335 CLOUDFLARENET |
| Country: | US |
| First seen: | 2026-06-25 13:55:28 UTC |
| Last seen: | never |
| UUID: | aaf09586-708d-11f1-97fa-42010aa4000a |
| Reporter | Anonymous |
| Reward | 5 credits from ThreatFox |
Anonymous
repack-games.com is a major warez distribution platform hosting tens of thousands of cracked and repacked commercial games worth billions in lost revenue. The site operates in direct partnership with known malicious file hosts rootz.so and ranoz.gg (Gaea Operations GmbH, DE) — exclusively contracted as their file hosting infrastructure — making it a primary demand-side driver generating millions in traffic and revenue for these dangerous malware hosting networks.Violations include:
Copyright infringement at massive scale — distributes billions of dollars worth of cracked commercial games without authorization
Contracted malicious hosting — exclusively uses rootz.so and ranoz.gg as file hosts, both confirmed by multiple AV vendors to distribute malware, stealers, RATs, and trackers
Stealer/trojan delivery at scale — game repacks contain dormant malware payloads silently installed on victim systems upon download
Acts as primary traffic/revenue generator — drives millions of visits to malicious hosts, directly funding their operations and expansion
No content moderation, no abuse contact, no ownership transparency
Dormant malware installation — cracked game repacks are trojanzed with credential stealers, system RATs, and botnet components
Phishing ads — serves malicious advertisements that download spyware without user consent
Gaming community targeting — exploits gamers' willingness to disable AV to maximize malware infection success rates
The platform is the primary growth engine and revenue source enabling rootz.so and ranoz.gg to operate at scale.
US