Observed role
Command-and-control infrastructure
Indicator that identifies a botnet command&control server (C&C)
Indicator investigation
Loading the current evidence view. Navigation and account controls remain available.
Loading verdict, provenance, relationships and sightings.
Indicator
Type domain · source intel_report_ingest
KNOWN MALWARE — Clearfake
Domain investigation
The warehouse identifies this domain as Unknown malware. It was registered 2 months ago. 1 stored citation support the local history. Domain ownership, hosting, and content can change, so attribution remains bounded to the cited observation.
Observed role
Command-and-control infrastructure
Indicator that identifies a botnet command&control server (C&C)
Registration
2 months ago
2026-06-23 · Dynadot Inc
Certificate history
Not established
Certificate Transparency lookup did not complete.
Current DNS
Does not resolve
No A record was returned; the name does not exist. Checked 2026-08-07.
Corpus evidence
1 connectors · 1 citations
Generic co-tags were excluded to avoid false relationships.
Observation window
2026-06-23 → 2026-08-19
First and last appearance in the local corpus, not global activity dates.
Findings stay bounded to named sources and observable infrastructure.
Domain indicator: code.verification-claude-cdn.beer
Neighborhood topology. Open the graph for interactive pivots.
Loading connected indicators, reports and entities.
High-signal pivots without leaving the thread you started in search.
Structured pivots from local graph context.
Full investigation canvas with neighbor expansion.