IOC Report
AlDente.dmg

loading gif

Processes

Path
Cmdline
Malicious
/Library/Frameworks/Mono.framework/Versions/4.4.2/bin/mono-sgen32
-
/usr/bin/open
/usr/bin/open /Volumes/AlDente/AlDente.app
/usr/libexec/xpcproxy
-
/usr/libexec/nsurlstoraged
/usr/libexec/nsurlstoraged --privileged

URLs

Name
IP
Malicious
https://apphousekitchen.com/?utm_campaign=aldente-
unknown
https://apphousekitchen.com/adding-aldente-pro-support-to-16-new-intel-macbook-models-full-list-belo
unknown
https://apphousekitchen.com/pricing/?utm_campaign=aldente-
unknown
https://apphousekitchen.com/aldente/aldenteproappcast.xml
unknown

Domains

Name
IP
Malicious
appledownload.map.fastly.net
151.101.3.8
h3.apis.apple.map.fastly.net
151.101.3.6

IPs

IP
Domain
Country
Malicious
151.101.3.6
h3.apis.apple.map.fastly.net
United States
151.101.3.8
appledownload.map.fastly.net
United States
23.46.224.247
unknown
United States