ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain estekhdam.download.

Database Entry


IOC ID:1843939
IOC: estekhdam.download
IOC Type :domain
Threat Type :payload_delivery
Malware: ClearFake
Confidence Level : Confidence level is high (100%)
Is compromised? : True
ASN:AS13335 CLOUDFLARENET
Country:- US
First seen:2026-07-03 08:59:24 UTC
Last seen:2026-07-03 08:59:29 UTC
UUID:7d41c3d2-76bd-11f1-97fa-42010aa4000a
Reporter Gi7w0rm
Reward 10 credits from anonymous
10 credits from raj_singh
Tags:3July2026 ClearFake Commandline DomainShadowing Windows

Avatar
Gi7w0rm
The account controlling the DNS for this domain has been compromised and an arbitrary wildcard subdomain is used to execute ClearFake attacks.