DomainMediumSignal 76/100
e-telegram.biz
First Seen
Aug 4, 2023
Last Seen
May 5, 2026
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
76%
Signal Score
76 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
9 reports76% confidence
9
Source reports
76%
Confidence score
Category tags
active scanactive scanningattachment deliveryauthentication attackbec attackbotnetbotnet activitybrand impersonationbrute forcecommand and controlcredential accesscredential harvestingcredential stuffingcredential theftdata exfiltrationdata store exposureddosdeceptive contentdenial of servicedistributed attacksexploitation activityftp brute forcehttp brute forcehydra attackidentity & access exploitationindicatorinjection activitylink injectionlink manipulationlink redirectionlogin attacklogin attemptsmalicious attachmentmalicious linksmalicious payloadmalicious softwaremalwaremalware deliverymalware distributionmedusa attacknetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork service scanningnmap scanphishingphishing attackphishing kitphishing websitephishing-databaseprocess injectionprotocol exploitationransomwarerdp scanningreconnaissancereconnaissance activityremote accessremote servicesresearchedservice enumerationservice scansmb scanningsmtp brute forcesocial engineeringssh attacksyn scant1018t1021t1021.001t1021.002t1040t1046t1055t1059t1059.001t1059.004t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1189t1190t1192t1204.001t1486t1496t1499.002t1499.003t1534t1563t1565t1566t1566.001t1566.002t1566.003t1566.004t1589t1589.002t1592t1595t1595.001t1595.002t1595.003t1598t1598.003tcp scantcp scanningtelnet threatudp scanvulnerability scanweb security
Activity Timeline
May 5May 5
Threat Activity Heatmap
· Peak: 2026-05-05LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated
The domain e-telegram.biz has emerged as a significant indicator of compromise (IOC) in the cybersecurity landscape, first observed on August
Threat ScoreHigh Risk
76
SIGNAL
Signal Score
76%
Confidence
9
Reports
First seenAug 4, 2023
Last seenMay 5, 2026
VirusTotal
Not checked
WHOIS
- registrar
- Gname.com Pte. Ltd.
- description
- For POC
- domain rank
- -1
- raw
- Admin City: REDACTED FOR PRIVACY Admin Country: REDACTED FOR PRIVACY Admin Organization: REDACTED FOR PRIVACY Admin Postal Code: REDACTED FOR PRIVACY Admin State/Province: REDACTED FOR PRIVACY Creation Date: 2023-04-09T11:56:22Z DNSSEC: unsigned Domain Name: e-telegram.biz Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: pendingDelete https://icann.org/epp#pendingDelete Domain Status: redemptionPeriod https://icann.org/epp#redemptionPeriod Name Server: please-renew-your-domain-in-www.gname.com Registrant City: 1f8f4166599d23ee Registrant Country: CN Registrant Email: f651612a2f356ad3s@ Registrant Fax Ext: 1f8f4166599d23ee Registrant Fax: 1f8f4166599d23ee Registrant Name: 1f8f4166599d23ee Registrant Organization: 3432650ec337c945 Registrant Phone Ext: 1f8f4166599d23ee Registrant Phone: 1f8f4166599d23ee Registrant Postal Code: 1f8f4166599d23ee Registrant State/Province: 7862e603bedb01ec Registrant Street: 1f8f4166599d23ee Registrar Abuse Contact Email: [email protected] Registrar IANA ID: 1923 Registrar URL: https://www.gname.com/ Registrar WHOIS Server: whois.gathernames.com Registrar: Gname.com Pte. Ltd. Registry Admin ID: REDACTED FOR PRIVACY Registry Domain ID: DE36A00F873494082802D04057D3FE269-GDREG Registry Expiry Date: 2024-04-09T11:56:22Z Registry Registrant ID: REDACTED FOR PRIVACY Registry Tech ID: REDACTED FOR PRIVACY Tech City: REDACTED FOR PRIVACY Tech Country: REDACTED FOR PRIVACY Tech Organization: REDACTED FOR PRIVACY Tech Postal Code: REDACTED FOR PRIVACY Tech State/Province: REDACTED FOR PRIVACY Updated Date: 2024-04-09T12:06:12Z
- references
- https://malware-filter.gitlab.io/malware-filter/phishing-filter-domains.txt
- subdomains count
- 1
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 years ago · Last seen 1 month ago
Appeared in 9 threat reports