IOC Radar
TLP:WHITE3 IOCs

Cybercriminals Impersonate Claude Code to Deploy Fileless .NET Infostealer

CP
Cyber Press
Published June 4, 2026Original Report

Diamond Model

SOCIAL AXISTECHNOLOGY AXISADVERSARYunknownINFRASTRUCTUREdownload.version-516.…oakenfjrod.ru185.177.239.255CAPABILITYunknownVICTIMunknown
Adversary
Infrastructure(3)
Capability
Victim

5W+H Threat Analysis

Analysis unavailable

Indicators of Compromise

Indicators of Compromise3

TypeIndicatorConfidenceScoreFirst Seen
Domaindownload.version-516.com
indicatorintel-blognetwork
High
58
Jun 5, 26
Domainoakenfjrod.ru
intel-blogloadermalware
High
58
Jun 5, 26
IP185.177.239.255
intel-blogloadermalware
High
58
Jun 5, 26

IOC Relationship Graph

IOC Relationship Graph3 total IOCs
DomainIP
Domain2IP1REPORTCybercriminals Impersonate
scroll to zoom · drag to pan · click IOC to open