DomainMediumSignal 0/100
duckduckgo.com
Location
First Seen
Apr 23, 2025
Last Seen
Jun 17, 2026
Found in 2 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
0%
Signal Score
0 / 100
IDS Rule
No
Threat Context
Tags
Feed Intelligence Summary
2 reports0% confidence
2
Source reports
0%
Confidence score
Category tags
indicatornetworkresearched
Activity Timeline
Jun 17Jun 17
Threat Activity Heatmap
LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
1
Minimal
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated
This indicator, `duckduckgo.com`, has been identified with a low score of 0.0 and is explicitly listed as whitelisted, indicating it is benign and poses no direct threat to the organization. Its inclusion in certain threat intelligence feeds, such as AlienVault Ransomware-Firehol and SOCRadar Threat Exchange Services, does not, in this instance, signify malicious activity or compromise. Instead, the available evidence strongly suggests this domain is a legitimate and commonly used service. Organ…
Threat ScoreLow Risk
0
SIGNAL
Signal Score
0%
Confidence
2
Reports
First seenApr 23, 2025
Last seenJun 17, 2026
VirusTotal
Not checked
WHOIS
- description
- A Cuckoo executable, for MS Windows, runs at 12:12:57 on the morning of 11 November, 2024, and ends in an unauthorised binary that ends up in a box full of data.- rip.exe tied to a gov domain is a treat.
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 3 days ago
Appeared in 2 threat reports