IOC Radar
DomainMediumSignal 76/100

e-telegram.biz

First Seen
Aug 4, 2023
Last Seen
May 5, 2026
Aug 4
First Seen
1044d ago
May 5
Last Seen
40d ago
9
Reports
source reports
76%
Confidence
medium
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
76%
Signal Score
76 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

42 techniques

Feed Intelligence Summary

9 reports76% confidence
9
Source reports
76%
Confidence score
Category tags
active scanactive scanningattachment deliveryauthentication attackbec attackbotnetbotnet activitybrand impersonationbrute forcecommand and controlcredential accesscredential harvestingcredential stuffingcredential theftdata exfiltrationdata store exposureddosdeceptive contentdenial of servicedistributed attacksexploitation activityftp brute forcehttp brute forcehydra attackidentity & access exploitationindicatorinjection activitylink injectionlink manipulationlink redirectionlogin attacklogin attemptsmalicious attachmentmalicious linksmalicious payloadmalicious softwaremalwaremalware deliverymalware distributionmedusa attacknetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork service scanningnmap scanphishingphishing attackphishing kitphishing websitephishing-databaseprocess injectionprotocol exploitationransomwarerdp scanningreconnaissancereconnaissance activityremote accessremote servicesresearchedservice enumerationservice scansmb scanningsmtp brute forcesocial engineeringssh attacksyn scant1018t1021t1021.001t1021.002t1040t1046t1055t1059t1059.001t1059.004t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1189t1190t1192t1204.001t1486t1496t1499.002t1499.003t1534t1563t1565t1566t1566.001t1566.002t1566.003t1566.004t1589t1589.002t1592t1595t1595.001t1595.002t1595.003t1598t1598.003tcp scantcp scanningtelnet threatudp scanvulnerability scanweb security

Activity Timeline

1 total obs
May 5May 5

Threat Activity Heatmap

· Peak: 2026-05-05
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated

The domain e-telegram.biz has emerged as a significant indicator of compromise (IOC) in the cybersecurity landscape, first observed on August

Threat ScoreHigh Risk
76
SIGNAL
Signal Score
76%
Confidence
9
Reports
First seenAug 4, 2023
Last seenMay 5, 2026

VirusTotal

Not checked

WHOIS

registrar
Gname.com Pte. Ltd.
description
For POC
domain rank
-1
raw
Admin City: REDACTED FOR PRIVACY Admin Country: REDACTED FOR PRIVACY Admin Organization: REDACTED FOR PRIVACY Admin Postal Code: REDACTED FOR PRIVACY Admin State/Province: REDACTED FOR PRIVACY Creation Date: 2023-04-09T11:56:22Z DNSSEC: unsigned Domain Name: e-telegram.biz Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: pendingDelete https://icann.org/epp#pendingDelete Domain Status: redemptionPeriod https://icann.org/epp#redemptionPeriod Name Server: please-renew-your-domain-in-www.gname.com Registrant City: 1f8f4166599d23ee Registrant Country: CN Registrant Email: f651612a2f356ad3s@ Registrant Fax Ext: 1f8f4166599d23ee Registrant Fax: 1f8f4166599d23ee Registrant Name: 1f8f4166599d23ee Registrant Organization: 3432650ec337c945 Registrant Phone Ext: 1f8f4166599d23ee Registrant Phone: 1f8f4166599d23ee Registrant Postal Code: 1f8f4166599d23ee Registrant State/Province: 7862e603bedb01ec Registrant Street: 1f8f4166599d23ee Registrar Abuse Contact Email: [email protected] Registrar IANA ID: 1923 Registrar URL: https://www.gname.com/ Registrar WHOIS Server: whois.gathernames.com Registrar: Gname.com Pte. Ltd. Registry Admin ID: REDACTED FOR PRIVACY Registry Domain ID: DE36A00F873494082802D04057D3FE269-GDREG Registry Expiry Date: 2024-04-09T11:56:22Z Registry Registrant ID: REDACTED FOR PRIVACY Registry Tech ID: REDACTED FOR PRIVACY Tech City: REDACTED FOR PRIVACY Tech Country: REDACTED FOR PRIVACY Tech Organization: REDACTED FOR PRIVACY Tech Postal Code: REDACTED FOR PRIVACY Tech State/Province: REDACTED FOR PRIVACY Updated Date: 2024-04-09T12:06:12Z
references
https://malware-filter.gitlab.io/malware-filter/phishing-filter-domains.txt
subdomains count
1

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 years ago · Last seen 1 month ago
Appeared in 9 threat reports