IOC Radar
DomainHighVerifiedSignal 29/100

cns.bf

First Seen
Mar 16, 2025
Last Seen
Apr 22, 2026
Mar 16
First Seen
456d ago
Apr 22
Last Seen
55d ago
6
Reports
source reports
29%
Confidence
high
Found in 6 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
29%
Signal Score
29 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

7 techniques

Feed Intelligence Summary

6 reports29% confidence
6
Source reports
29%
Confidence score
Category tags
brand impersonationbrute forcecredential harvestingcredential stuffingeuropeidentity & access exploitationindicatorinjection activitylink injectionmalwaremalware distributionnetworkphishingphishing attackphishing campaign detectionresearchedsocial engineeringt1189t1566t1566.001t1566.002t1566.003t1598t1598.003

Activity Timeline

1 total obs
Apr 22Apr 22

Threat Activity Heatmap

· Peak: 2026-04-22
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated

This IOC (domain `cns.bf`) is highly significant as it is strongly implicated in phishing activities, as evidenced by its consistent presence in multiple reputable threat intelligence feeds, including Phishing Army and Phishtank Verified Online Url Feeds. The domain's association with various file hashes and subdomains suggests its potential role as a sophisticated component within a broader malicious infrastructure, possibly serving as a command-and-control server, a distribution point for dive…

Threat ScoreLow Risk
29
SIGNAL
Signal Score
29%
Confidence
6
Reports
First seenMar 16, 2025
Last seenApr 22, 2026
Verified IOC

VirusTotal

Not checked

WHOIS

registrar
ECODEV INTERNATIONAL
domain rank
-1
raw
Creation Date: 2021-01-01T00:00:00.0Z DNSSEC: unsigned Domain Name: cns.bf Domain Status: ok https://icann.org/epp#ok Name Server: ns1.infomaniak.ch Name Server: ns2.infomaniak.ch Registrant City: 805cd1791f1363db Registrant Country: BF Registrant Email: 4c49b02e1d7a9118s@ Registrant Name: 9d5ea1d0158e2b79 Registrant Organization: 063a8ee2e69d1f4a Registrant Phone: 9d5ea1d0158e2b79 Registrant Street: f10923782b520465 Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: +226.56343412 Registrar Admin Contact: +22652004896 Registrar Admin Email: [email protected] Registrar Country: BF Registrar Phone: +226.56343412 Registrar Registration Expiration Date: 2025-08-24T12:00:00.0Z Registrar URL: RegistrarURL Registrar: ECODEV INTERNATIONAL Registry Domain ID: 1044-BFA Registry Expiry Date: 2025-08-24T12:00:00.0Z Registry Registrant ID: Uf2qp-U7VHO Registry Registrant ID: vrTVK-4t3Ew Registry WHOIS Server: whois.registre.bf Updated Date: 2024-08-24T14:17:41.681Z
subdomains count
2

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 1 year ago · Last seen 1 month ago
Appeared in 6 threat reports