IOC Report
http://schreinerei-spuck.de

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 40
HTML document, ASCII text
downloaded
Chrome Cache Entry: 41
HTML document, ISO-8859 text, with very long lines (373)
downloaded
Chrome Cache Entry: 42
HTML document, ASCII text
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2060 --field-trial-handle=2012,i,18297590338028200411,369549660364005682,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://schreinerei-spuck.de"

URLs

Name
IP
Malicious
http://schreinerei-spuck.de
http://www.rehau.de/spuck
185.112.125.71
http://schreinerei-spuck.de/
81.169.145.165
https://www.rehau.com/de-de/404

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.214.172
schreinerei-spuck.de
81.169.145.165
www.google.com
172.217.215.106
wwworigin.rehau.com
185.112.125.71
fp2e7a.wpc.phicdn.net
192.229.211.108
www.rehau.com
unknown
www.rehau.de
unknown

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
185.112.125.71
wwworigin.rehau.com
Germany
172.217.215.106
www.google.com
United States
192.168.2.4
unknown
unknown
81.169.145.165
schreinerei-spuck.de
Germany

DOM / HTML

URL
Malicious
https://www.rehau.com/de-de/404