IOC Radar
DomainMediumSignal 0/100

auto2116.phpnet.us

First Seen
Feb 19, 2026
Last Seen
Feb 19, 2026
Feb 19
First Seen
122d ago
Feb 19
Last Seen
122d ago
1
Reports
source reports
0%
Confidence
medium
Found in 1 report. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
0%
Signal Score
0 / 100
IDS Rule
No
Threat Context
Tags

Feed Intelligence Summary

1 report0% confidence
1
Source reports
0%
Confidence score
Category tags
indicatornetworkresearched

Activity Timeline

1 total obs
Feb 19Feb 19

Threat Activity Heatmap

· Peak: 2026-02-19
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated

This analysis concerns the hostname `auto2116.phpnet.us`, which has been identified with a very low threat score of 0.0 and a confirmed whitelist status. This indicates that the indicator is currently considered benign and does not pose an immediate threat to the organization. The inclusion of this hostname in security feeds, specifically the Appealer Whitelist Service, suggests it has been explicitly evaluated and deemed safe for routine operations. Therefore, its mere presence in threat intell…

Threat ScoreLow Risk
0
SIGNAL
Signal Score
0%
Confidence
1
Reports
First seenFeb 19, 2026
Last seenFeb 19, 2026

VirusTotal

Not checked

WHOIS

registrar
NAMECHEAP INC
creation date
2006-05-17T17:08:39
expiration date
2027-05-16T23:59:59
updated date
2026-04-21T09:23:43
name servers
ns1.byet.org, ns2.byet.org, ns3.byet.org, ns4.byet.org, ns5.byet.org
status
ok https://icann.org/epp#ok

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 months ago · Last seen 4 months ago
Appeared in 1 threat report