IOC Report
https://dt.r24dmp.de/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 40
ASCII text
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2052 --field-trial-handle=2012,i,12741340570266483771,6118006599820063687,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://dt.r24dmp.de/"

URLs

Name
IP
Malicious
https://dt.r24dmp.de/
malicious
https://dt.r24dmp.de/
malicious
https://dt.r24dmp.de/?rptds=
unknown
https://dt.r24dmp.de/favicon.ico
216.239.34.21

Domains

Name
IP
Malicious
dt.r24dmp.de
216.239.34.21
www.google.com
172.253.124.99
fp2e7a.wpc.phicdn.net
192.229.211.108

IPs

IP
Domain
Country
Malicious
172.253.124.99
www.google.com
United States
239.255.255.250
unknown
Reserved
216.239.34.21
dt.r24dmp.de
United States
216.239.36.21
unknown
United States
192.168.2.4
unknown
unknown

DOM / HTML

URL
Malicious
https://dt.r24dmp.de/