IOC Report
http://421225.tctm.xyz

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 41
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 42
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 43
GIF image data, version 89a, 1 x 1
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2316 --field-trial-handle=2224,i,14204501983655273211,14615635216024576091,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://421225.tctm.xyz"
malicious

URLs

Name
IP
Malicious
http://421225.tctm.xyz
malicious
http://421225.tctm.xyz/favicon.ico
13.35.116.85
http://421225.tctm.xyz/

Domains

Name
IP
Malicious
421225.tctm.xyz
unknown
malicious
dgqaz43pfk1px.cloudfront.net
13.35.116.85
www.google.com
192.178.50.36

IPs

IP
Domain
Country
Malicious
192.178.50.36
www.google.com
United States
13.35.116.23
unknown
United States
239.255.255.250
unknown
Reserved
192.168.2.4
unknown
unknown
13.35.116.85
dgqaz43pfk1px.cloudfront.net
United States

DOM / HTML

URL
Malicious
http://421225.tctm.xyz/