IOC Radar
DomainMediumSignal 0/100

duckduckgo.com

Location
Trinidad and TobagoTrinidad and Tobago
First Seen
Apr 23, 2025
Last Seen
Jun 17, 2026
Apr 23
First Seen
423d ago
Jun 17
Last Seen
3d ago
2
Reports
source reports
0%
Confidence
medium
Found in 2 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
0%
Signal Score
0 / 100
IDS Rule
No
Threat Context
Tags

Feed Intelligence Summary

2 reports0% confidence
2
Source reports
0%
Confidence score
Category tags
indicatornetworkresearched

Activity Timeline

1 total obs
Jun 17Jun 17

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
1
Minimal
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated

This indicator, `duckduckgo.com`, has been identified with a low score of 0.0 and is explicitly listed as whitelisted, indicating it is benign and poses no direct threat to the organization. Its inclusion in certain threat intelligence feeds, such as AlienVault Ransomware-Firehol and SOCRadar Threat Exchange Services, does not, in this instance, signify malicious activity or compromise. Instead, the available evidence strongly suggests this domain is a legitimate and commonly used service. Organ…

Threat ScoreLow Risk
0
SIGNAL
Signal Score
0%
Confidence
2
Reports
First seenApr 23, 2025
Last seenJun 17, 2026

VirusTotal

Not checked

WHOIS

description
A Cuckoo executable, for MS Windows, runs at 12:12:57 on the morning of 11 November, 2024, and ends in an unauthorised binary that ends up in a box full of data.- rip.exe tied to a gov domain is a treat.

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 3 days ago
Appeared in 2 threat reports