🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain flint-32.com.

Database Entry


IOC ID:1906299
IOC: flint-32.com
IOC Type :domain
Threat Type :botnet_cc
Malware: AMOS
Malware alias:Atomic macOS Stealer
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS13335 CLOUDFLARENET
Country:- US
First seen:2026-09-09 15:58:26 UTC
Last seen:never
UUID:8d782f34-ac65-11f1-b569-42010aa4000a
Reporter Anonymous
Reward 5 credits from ThreatFox
Tags:Amos ClickFix macOS
Reference: https://bazaar.abuse.ch/sample/8f12396cfb1ac4d52b3c0fad997b2cf83839bc464cfa43e43959239a3016d287/

Avatar
Anonymous
Victim telemetry beacon contacted by the AMOS ClickFix stage 2 zsh loader, before the stage 4 Mach-O is fetched.