DomainMediumSignal 67/100
duschicka.de
Location
First Seen
May 27, 2021
Last Seen
Apr 6, 2026
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
67%
Signal Score
67 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
8 reports67% confidence
8
Source reports
67%
Confidence score
Category tags
account discoveryaccount profilingaccount takeoveraccount takeover attemptactive scanactive scanningattachment phishingauthentication attackbecbotnetbotnet activitybrand impersonationbrute forcebusiness email compromisecommand and controlcompromised accountcredential accesscredential harvestingcredential phishingcredential stuffingcredential theftdata exfiltrationdata store exposuredata theftddosdenial of servicedistributed attackseuropeexploitation activityfinancefraudftp brute forcegermanyhttp brute forcehydra attackidentity & access exploitationindicatorinjection activitylink injectionlink obfuscationlink redirectionlogin attacklogin attemptsmalicious attachmentmalicious linkmalicious linksmalicious softwaremalwaremalware deliverymalware distributionmalware phishingmedusa attacknetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork service scanningnmap scanphishingphishing activityphishing attackphishing campaignphishing-databaseprocess injectionprotocol exploitationransomwarerdp scanningreconnaissancereconnaissance activityremote accessremote servicesresearchedscams & fraudservice enumerationservice scansmb scanningsmtp brute forcesocial engineeringssh attacksyn scant1018t1021t1021.001t1021.002t1040t1046t1055t1059t1059.001t1059.004t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1189t1190t1192t1204t1204.001t1486t1496t1499.002t1499.003t1534t1539t1563t1565t1566t1566.001t1566.002t1566.003t1566.004t1567t1567.001t1589t1589.002t1592t1595t1595.001t1595.002t1595.003t1598t1598.003tcp scantcp scanningtelnet threatudp scanvulnerability scanweb securitywebsite phishing
Activity Timeline
Apr 6Apr 6
Threat Activity Heatmap
· Peak: 2026-04-06LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated
This Indicator of Compromise (IOC), the domain `duschicka.de`, represents a significant and credible threat to organizational security. Its consistent association with numerous phishing campaigns and its presence across multiple reputable threat intelligence feeds (including AlienVault OTX, Kaspersky Public Requests, and SOCRadar) strongly suggests its active use in malicious activities. If this domain is successfully leveraged against or accessed within the organizational environment, it could …
Threat ScoreMedium Risk
67
SIGNAL
Signal Score
67%
Confidence
8
Reports
First seenMay 27, 2021
Last seenApr 6, 2026
VirusTotal
Not checked
WHOIS
- description
- For POC
- domain rank
- -1
- raw
- Changed: 2023-09-28T00:28:40+02:00 Domain: duschicka.de Nserver: ns3.stratoserver.net Nserver: ns4.stratoserver.net Status: connect
- subdomains count
- 14
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 5 years ago · Last seen 2 months ago
Appeared in 8 threat reports