ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain dapala.net.

Database Entry


IOC ID:1783859
IOC: dapala.net
IOC Type :domain
Threat Type :payload_delivery
Malware: IClickFix
Confidence Level : Confidence level is high (90%)
Is compromised? : False
ASN:AS62904 AS62904
Country:- US
First seen:2026-04-11 07:06:28 UTC
Last seen:never
UUID:fff93449-34e9-11f1-9af6-42010aa4000a
Reporter Lenny_3BO
Reward 5 credits from ThreatFox
Tags:c2 ClickFix python shellcode

Avatar
Lenny_3BO
ClickFix C2 and stager host. /95126aeb-4120-56b1-8c9e-63fdf0c0b6f9/scr3 serves Python stager (19KB, Cyrillic obfuscated, XOR shellcode). /v3AB was stage 3 binary endpoint (now 404). IP 173.232.146.146, ClouDNS, registered ~2026-03-20.