IOC Radar
DomainMediumSignal 88/100

02web-zoom.us

Location
United StatesUnited States
First Seen
Feb 4, 2026
Last Seen
Jun 20, 2026
Feb 4
First Seen
138d ago
Jun 20
Last Seen
2d ago
9
Reports
source reports
88%
Confidence
medium
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
88%
Signal Score
88 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

24 techniques

Feed Intelligence Summary

9 reports88% confidence
9
Source reports
88%
Confidence score
Category tags
abuseaccess controlactiveactive contentactive scanactive threatalienvault_ransomwarebad reputationblocklistbluenoroffbrand impersonationbrute forcec++c2 servercabbagecabbage ratcageychameleoncommand & controlcontactcontentcopycredential harvestingcredential stuffingcredential theftcryptocrypto scamcryptocurrencycryptocurrency threatscryptojackingdata exfiltrationdata store exposuredestroylist_phishingdomainsdownloaderdrainerelfexecutable fileexploitation activityfake meetingfinancefraudhasheshelloidentity & access exploitationindicatorinjection activityipv4lazaruslinuxmachomalicious domainmalicious softwaremalwaremanual-collectionmedium-risknetworknorth americaperlphishingphishing attackphishing campaignspowershellprocess injectionransomwareremote accessresearchedresource hijackingscamscams & fraudsecurity policyservicesnippetsocial engineeringt1008t1055t1056t1059t1071.001t1078t1102t1123t1125t1176t1204.002t1486t1496t1547t1552.002t1557t1565t1566t1566.001t1566.002t1566.003t1567.001t1573t1583.001terminatesthreat actorthreat intelligence feedthreat preventiontor nodetype osintunited statesusvalidinvbsvbs payloadvoiceweb protocolzoom

Activity Timeline

1 total obs
Jun 20Jun 20

Threat Activity Heatmap

· Peak: 2026-06-20
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
1
Minimal
30d
1
Minimal
3mo
1
Minimal
Threat ScoreHigh Risk
88
SIGNAL
Signal Score
88%
Confidence
9
Reports
First seenFeb 4, 2026
Last seenJun 20, 2026

VirusTotal

Not checked

WHOIS

description
We expanded our research into the recent UNC1069 campaign, which targets individuals by luring them into fraudulent meetings hosted by fake companies. Our analysis focuses on the diverse attack chains employed by the threat actors, as well as the scale and sophistication of their supporting infrastructure.
domain rank
-1
raw
Administrative city: Boston Administrative country: United States Administrative email: [email protected] Administrative state: MA Create date: 2026-02-04 00:00:00 Domain name: 02web-zoom.us Domain registrar id: 1647.0 Expiry date: 2027-02-04 00:00:00 Name server 1: ns1.dns-parking.com Name server 2: ns2.dns-parking.com Query time: 2026-02-06 13:40:51 Registrant city: 4c1e8923fbe04777 Registrant country: United States Registrant email: [email protected] Registrant name: a956363f2b0066e1 Registrant phone: 5b01c4a169ea2331 Registrant state: 36e414cc8874c746 Registrant zip: cf1f85d8ca69849f Technical city: Boston Technical country: United States Technical email: [email protected] Technical state: MA Update date: 2026-02-04 00:00:00
subdomains count
1

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 months ago · Last seen 2 days ago
Appeared in 9 threat reports