IOC Radar
DomainMediumSignal 77/100

allegro.ofei12717219.sbs

Location
PolandPoland
First Seen
Apr 14, 2026
Last Seen
Jun 3, 2026
Apr 14
First Seen
61d ago
Jun 3
Last Seen
12d ago
7
Reports
source reports
77%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
77%
Signal Score
77 / 100
IDS Rule
No
Threat Context
Tags

Feed Intelligence Summary

7 reports77% confidence
7
Source reports
77%
Confidence score
Category tags
dgaeuropehexindicatornetworkphishpolandpolcertresearched

Activity Timeline

1 total obs
Jun 3Jun 3

Threat Activity Heatmap

· Peak: 2026-06-03
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated

This Indicator of Compromise (IOC), the domain name `allegro.ofei12717219.sbs`, carries a high threat score of 76.71, indicating a significant and active risk to organizational security. Its consistent presence across multiple reputable threat intelligence feeds, such as Phishing Army, Hole Cert, Kaspersky Public Requests, and SOCRadar Threat Exchange Services, strongly suggests its involvement in malicious activities like phishing, malware distribution, or acting as a command-and-control (C2) s…

Threat ScoreHigh Risk
77
SIGNAL
Signal Score
77%
Confidence
7
Reports
First seenApr 14, 2026
Last seenJun 3, 2026

VirusTotal

Not checked

WHOIS

registrar
Global Domain Group LLC
description
See: https://cert.pl/en/warning-list/ (archived version here: https://web.archive.org/web/20231029161224/https://cert.pl/en/posts/2020/03/malicious_domains/)
raw
Creation Date: 2026-04-12T19:46:42.0Z DNSSEC: unsigned Domain Name: OFEI12717219.SBS Domain Status: addPeriod https://icann.org/epp#addPeriod Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: serverTransferProhibited https://icann.org/epp#serverTransferProhibited Name Server: MELINA.NS.CLOUDFLARE.COM Name Server: RANDALL.NS.CLOUDFLARE.COM Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: +1.8053943992 Registrar IANA ID: 3956 Registrar URL: https://www.globaldomaingroup.com Registrar WHOIS Server: www.globaldomaingroup.com Registrar: Global Domain Group LLC Registry Domain ID: D629112544-CNIC Registry Expiry Date: 2027-04-12T23:59:59.0Z Updated Date: 2026-04-12T19:46:44.0Z

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 12 days ago
Appeared in 7 threat reports