DomainHighVerifiedSignal 64/100
cyclub.io
Location
First Seen
Mar 21, 2025
Last Seen
Feb 15, 2026
Found in 5 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
64%
Signal Score
64 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
5 reports64% confidence
5
Source reports
64%
Confidence score
Category tags
abuseaccessadresadresy urlamerykibardzo dugabotnetca datacommand and controlcsc corporateczech republicdata exfiltrationdata utworzeniadata wyganiciadigitaldigital certificate analysisdistributed attacksdnssecdocument exploitationeuropefirst stage payloadindicatorinfrastructure acquisitionreconnaissancemalicious softwaremalwaremalware deliverymicrosoft officemuinetworkoffice exploitationpolandprocess injectionresearchedsan joseserwer nazwssdeept1027t1036t1046t1055t1059t1059.001t1071t1071.001t1082t1095t1105t1189t1204.002t1486t1496t1499.002t1499.003t1547.001t1565t1566t1566.001t1573t1587.001t1590.001tworzytworzy katalogtworzy plikityp pliku
Activity Timeline
Feb 15Feb 15
Threat Activity Heatmap
· Peak: 2026-02-15LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated
The domain **cyclub.io**, originating from the Czech Republic, has been identified as a critical indicator of compromise (IOC) associated with botnet and malware activities. First observed on March
Threat ScoreMedium Risk
64
SIGNAL
Signal Score
64%
Confidence
5
Reports
First seenMar 21, 2025
Last seenFeb 15, 2026
Verified IOC
VirusTotal
Not checked
WHOIS
- registrar
- Whois Corp.
- description
- A look back at some of the key words and phrases used to describe the situation in Italy, as "probacja" (or "democrata), as they were translated into English.
- domain rank
- -1
- raw
- Admin City: REDACTED FOR PRIVACY Admin Country: REDACTED FOR PRIVACY Admin Organization: REDACTED FOR PRIVACY Admin Postal Code: REDACTED FOR PRIVACY Admin State/Province: REDACTED FOR PRIVACY Creation Date: 2021-05-03T07:02:31Z DNSSEC: unsigned Domain Name: cyclub.io Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Name Server: ns-124.awsdns-15.com Name Server: ns-1399.awsdns-46.org Name Server: ns-1840.awsdns-38.co.uk Name Server: ns-870.awsdns-44.net Registrant City: 1f8f4166599d23ee Registrant Country: KR Registrant Email: f651612a2f356ad3s@ Registrant Fax Ext: 1f8f4166599d23ee Registrant Fax: 1f8f4166599d23ee Registrant Name: 1f8f4166599d23ee Registrant Organization: e2fad540aa19aea2 Registrant Phone Ext: 1f8f4166599d23ee Registrant Phone: 1f8f4166599d23ee Registrant Postal Code: 1f8f4166599d23ee Registrant State/Province: 3432650ec337c945 Registrant Street: 1f8f4166599d23ee Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: +82.15884259 Registrar IANA ID: 100 Registrar URL: https://whois.co.kr Registrar WHOIS Server: whois.whois.co.kr Registrar: Whois Corp. Registry Admin ID: REDACTED FOR PRIVACY Registry Domain ID: f9edfc4c666e4097908c1315ad4c33c9-DONUTS Registry Expiry Date: 2025-05-03T07:02:31Z Registry Registrant ID: REDACTED FOR PRIVACY Registry Tech ID: REDACTED FOR PRIVACY Tech City: REDACTED FOR PRIVACY Tech Country: REDACTED FOR PRIVACY Tech Organization: REDACTED FOR PRIVACY Tech Postal Code: REDACTED FOR PRIVACY Tech State/Province: REDACTED FOR PRIVACY Updated Date: 2024-04-22T08:35:05Z
- subdomains count
- 1
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 1 year ago · Last seen 3 months ago
Appeared in 5 threat reports