DomainMediumSignal 64/100
bca.zdungk.com
Location
First Seen
Jun 10, 2022
Last Seen
Apr 19, 2026
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
64%
Signal Score
64 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
7 reports64% confidence
7
Source reports
64%
Confidence score
Category tags
academic and researchactive scanadministrationaptaustraliabackdoorbotnetbotnet activitybrute forcecertcert-ist enrichedcommand and controlcredential harvestingcredential stuffingdata exfiltrationdata store exposuredistributed attacksdroppereducationexploitation activitygovhighidentity & access exploitationindicatorinfostealerinfrastructure acquisitionreconnaissanceinjection activitylowmalicious softwaremalspammalwaremanualmongallnaikon - g0019networkoceaniaphishingphishing attackprocess injectionresearchedsocial engineeringsoutheastern asiaspamstealert1033t1055t1055.001t1071.001t1071.004t1082t1091t1132t1204t1211t1486t1496t1499.002t1499.003t1547t1560t1565t1566t1566.001t1566.002t1566.003t1569t1571t1587.001t1588.005t1590.001telecomthreat actorthreat actor: naikontor nodetrojanized applicationturkeywindows
Activity Timeline
Apr 19Apr 19
Threat Activity Heatmap
· Peak: 2026-04-19LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated
The domain **bca.zdungk.com** has been identified as a significant indicator of compromise (IOC) associated with multiple cyber threats, including botnet activity, malware distribution, phishing campaigns, and spam operations. First observed on June
Threat ScoreMedium Risk
64
SIGNAL
Signal Score
64%
Confidence
7
Reports
First seenJun 10, 2022
Last seenApr 19, 2026
VirusTotal
Not checked
WHOIS
- registrar
- NAMECHEAP INC
- creation date
- 2023-05-13T03:09:52
- expiration date
- 2027-05-13T03:09:52
- updated date
- 2026-05-13T09:05:41
- name servers
- DNS101.REGISTRAR-SERVERS.COM, DNS102.REGISTRAR-SERVERS.COM
- country
- IS
- org
- Withheld for Privacy Purposes
- status
- clientTransferProhibited https://icann.org/epp#clientTransferProhibited
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 4 years ago · Last seen 2 months ago
Appeared in 7 threat reports