DomainMediumSignal 41/100
boonies.in
Location
First Seen
Apr 10, 2024
Last Seen
Jun 7, 2026
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
41%
Signal Score
41 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
9 reports41% confidence
9
Source reports
41%
Confidence score
Category tags
accessaccount takeover attemptactive scanadminasiaattachment based phishingattachment phishingattachment-based phishingattackaustriaauthority impersonationbbkbecbec attemptbettingbhutanblueskybotnetbotnet activitybrbrand impersonationbrute forcebusiness email compromisecanadachemical & pharmaceuticalcmscommand and controlcommunication protocolconfigcredential harvestingcredential phishingcredential stuffingcredential theftcredential_harvestingcrypto currencycryptocurrencycssdata exfiltrationdata store exposuredeceptive emaildelivery service scamdetailsdhldhl phishing campaigndistributed attacksdomaindomainsemail-based attackexecutable fileexploitation activityexpressfake login pagefinancefintechfleet managementform submissionfrancefraudfraudulent activityfraudulent communicationfreight servicesgaminggermanygithubglobalgroupshtmlhttphttp scannerhttpshungaryidentity & access exploitationimagesindexindicatorindicators_of_compromiseinfoinformation technologyinfrastructure acquisitionreconnaissanceinitial accessinjection activityiot securityipfsirelanditalylink phishinglink redirectionlink-based phishingmalicious activitymalicious attachmentmalicious domainmalicious linksmalicious softwaremalicious_attachmentmalicious_urlmalwaremalware deliverymalware distributionmaritime transportmedia & entertainmentmediummexicomobile threatnetnetworknorth americapagepassenger transportationphishingphishing activityphishing attackphishing domainsphishing urlsphishing-databasephishing_indicatorsphppioneerplpleskpolandprocess injectionragnarokrail transportransomwarerecaptcharesearchedretailromaniascamscams & fraudscriptsecurity operationsshipping & logisticsslugsmssms phishingsmtpsocial engineeringsocial engineering attacksoftware publisherspamspearphishingsupportsurface webt1055t1071.001t1071.004t1078t1078.004t1189t1190t1192t1204t1204.001t1204.002t1486t1496t1499.002t1499.003t1534t1539t1565t1566t1566.001t1566.002t1566.003t1566.004t1567.001t1583t1583.001t1587.001t1588t1588.002t1588.004t1590.001t1598t1598.001t1598.003telecommunicationthreat actorthreat indicatorsthreat intelligencethreat intelligence reporttinymcetor nodetransportation and warehousingtransportation infrastructuretransportation technologytwitterunited statesuploadurlurlsweb securityweb trafficwebsitewebsite phishing
Activity Timeline
Jun 7Jun 7
Threat Activity Heatmap
· Peak: 2026-06-07LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated
The domain **boonies.in** has emerged as a significant indicator of compromise (IOC) linked to multiple cyber threats originating from Brazil. First observed on April
Threat ScoreMedium Risk
41
SIGNAL
Signal Score
41%
Confidence
9
Reports
First seenApr 10, 2024
Last seenJun 7, 2026
VirusTotal
Not checked
WHOIS
- registrar
- GoDaddy
- description
- LTNA Cyber provides additional enrichment for domain and URL indicators, including RIR and DNS intelligence, domain registration context, routing verification, BGP stream visibility, and GeoIP/ISP attribution. Learn more: https://ltna.com.au/cyber
- domain rank
- -1
- raw
- Admin City: REDACTED FOR PRIVACY Admin Country: REDACTED FOR PRIVACY Admin Organization: REDACTED FOR PRIVACY Admin Postal Code: REDACTED FOR PRIVACY Admin State/Province: REDACTED FOR PRIVACY Billing City: REDACTED FOR PRIVACY Billing Country: REDACTED FOR PRIVACY Billing Organization: REDACTED FOR PRIVACY Billing Postal Code: REDACTED FOR PRIVACY Billing State/Province: REDACTED FOR PRIVACY Creation Date: 2023-01-11T18:00:11.014Z DNSSEC: unsigned Domain Name: boonies.in Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited Domain Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited Name Server: ns09.domaincontrol.com Name Server: ns10.domaincontrol.com Registrant City: 1f8f4166599d23ee Registrant Country: IN Registrant Email: f651612a2f356ad3s@ Registrant Fax: 1f8f4166599d23ee Registrant Name: 1f8f4166599d23ee Registrant Organization: 3432650ec337c945 Registrant Phone: 1f8f4166599d23ee Registrant Postal Code: 1f8f4166599d23ee Registrant State/Province: 2ba514e0574f5977 Registrant Street: 1f8f4166599d23ee Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: +1.4805058800 Registrar IANA ID: 146 Registrar URL: www.godaddy.com Registrar WHOIS Server: whois.godaddy.com Registrar: GoDaddy Registry Admin ID: REDACTED FOR PRIVACY Registry Billing ID: REDACTED FOR PRIVACY Registry Domain ID: DD41A584ADDFE4A53AB67828EEE67106F-IN Registry Expiry Date: 2026-01-11T18:00:11.014Z Registry Registrant ID: REDACTED FOR PRIVACY Registry Tech ID: REDACTED FOR PRIVACY Tech City: REDACTED FOR PRIVACY Tech Country: REDACTED FOR PRIVACY Tech Organization: REDACTED FOR PRIVACY Tech Postal Code: REDACTED FOR PRIVACY Tech State/Province: REDACTED FOR PRIVACY Updated Date: 2025-06-03T14:55:53.043Z
- references
- https://www.virustotal.com/gui/collection/9e06470d30593e11c8daad2157e0d4ef1ccce47787e2b5303846704767c26d6a
- subdomains count
- 7
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 years ago · Last seen 8 days ago
Appeared in 9 threat reports