ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain icloudubicationid.work.

Database Entry


IOC ID:1779170
IOC: icloudubicationid.work
IOC Type :domain
Threat Type :botnet_cc
Malware: DCRat
Malware alias:DarkCrystal RAT
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS396982 GOOGLE-CLOUD-PLATFORM
Country:- US
First seen:2026-03-30 18:39:07 UTC
Last seen:never
UUID:f0ed0e28-2c62-11f1-9af6-42010aa4000a
Reporter Lenny_3BO
Reward 5 credits from ThreatFox
Tags:ClickFix dcrat Omegatech phishing
Reference: https://www.virustotal.com/gui/ip-address/91.92.240.117

Avatar
Lenny_3BO
Apple iCloud/Find My phishing domains co-hosted with DCRat C2 on OMEGATECH 91.92.240.117. ClickFix IRM|IEX delivery. 35+ domains total targeting LATAM and Turkey.