IOC Radar
TLP:WHITE1 IOC

ScreenConnect Malware Campaign Uses SEO Poisoning to Target Freeware Downloads

CP
Cyber Press
Published July 2, 2026Original Report

Malware Families

Diamond Model

SOCIAL AXISTECHNOLOGY AXISADVERSARYunknownINFRASTRUCTUREmora1987.work.gdCAPABILITYAsyncRATVICTIMunknown
Adversary
Infrastructure(1)
Capability(1)
Victim

5W+H Threat Analysis

Analysis unavailable

Indicators of Compromise

Indicators of Compromise1

TypeIndicatorConfidenceScoreFirst Seen
Domainmora1987.work.gd
aptc2espionage
High
64
Jul 1, 26

IOC Relationship Graph

IOC Relationship Graph1 total IOCs
Domain
Domain1Malware1REPORTScreenConnect Malware CampAsyncRAT
scroll to zoom · drag to pan · click IOC to open