IOC Radar
DomainMediumSignal 64/100

bca.zdungk.com

Location
TurkeyTurkey
First Seen
Jun 10, 2022
Last Seen
Apr 19, 2026
Jun 10
First Seen
1474d ago
Apr 19
Last Seen
65d ago
7
Reports
source reports
64%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
64%
Signal Score
64 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

26 techniques

Feed Intelligence Summary

7 reports64% confidence
7
Source reports
64%
Confidence score
Category tags
academic and researchactive scanadministrationaptaustraliabackdoorbotnetbotnet activitybrute forcecertcert-ist enrichedcommand and controlcredential harvestingcredential stuffingdata exfiltrationdata store exposuredistributed attacksdroppereducationexploitation activitygovhighidentity & access exploitationindicatorinfostealerinfrastructure acquisitionreconnaissanceinjection activitylowmalicious softwaremalspammalwaremanualmongallnaikon - g0019networkoceaniaphishingphishing attackprocess injectionresearchedsocial engineeringsoutheastern asiaspamstealert1033t1055t1055.001t1071.001t1071.004t1082t1091t1132t1204t1211t1486t1496t1499.002t1499.003t1547t1560t1565t1566t1566.001t1566.002t1566.003t1569t1571t1587.001t1588.005t1590.001telecomthreat actorthreat actor: naikontor nodetrojanized applicationturkeywindows

Activity Timeline

1 total obs
Apr 19Apr 19

Threat Activity Heatmap

· Peak: 2026-04-19
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated

The domain **bca.zdungk.com** has been identified as a significant indicator of compromise (IOC) associated with multiple cyber threats, including botnet activity, malware distribution, phishing campaigns, and spam operations. First observed on June

Threat ScoreMedium Risk
64
SIGNAL
Signal Score
64%
Confidence
7
Reports
First seenJun 10, 2022
Last seenApr 19, 2026

VirusTotal

Not checked

WHOIS

registrar
NAMECHEAP INC
creation date
2023-05-13T03:09:52
expiration date
2027-05-13T03:09:52
updated date
2026-05-13T09:05:41
name servers
DNS101.REGISTRAR-SERVERS.COM, DNS102.REGISTRAR-SERVERS.COM
country
IS
org
Withheld for Privacy Purposes
status
clientTransferProhibited https://icann.org/epp#clientTransferProhibited

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 years ago · Last seen 2 months ago
Appeared in 7 threat reports