IOC Radar
DomainHighVerifiedSignal 100/100

ebay-mall.xyz

First Seen
Apr 7, 2023
Last Seen
Feb 15, 2026
Apr 7
First Seen
1163d ago
Feb 15
Last Seen
118d ago
6
Reports
source reports
99%
Confidence
high
7/91
VirusTotal
detections
Found in 6 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
99%
Signal Score
100 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

34 techniques

Feed Intelligence Summary

6 reports99% confidence
6
Source reports
99%
Confidence score
Category tags
active scanningauthentication attackbotnetbrute forcecommand and controlcredential accesscredential harvestingcredential stuffingdata exfiltrationdenial of servicedistributed attacksftp brute forcehttp brute forcehydra attackindicatorlogin attacklogin attemptsmalicious softwaremalwaremedusa attacknetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork service scanningnmap scanphishing attackprocess injectionprotocol exploitationrdp scanningreconnaissancereconnaissance activityremote accessremote servicesresearchedservice enumerationsmb scanningsmtp brute forcesocial engineeringssh attacksyn scant1018t1021t1021.001t1021.002t1040t1046t1055t1059t1059.001t1059.004t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1190t1486t1496t1499.002t1499.003t1563t1565t1566.001t1566.002t1566.003t1589t1589.002t1592t1595t1595.001t1595.002t1595.003tcp scantcp scanningtelnet threatudp scanvulnerability scan

Activity Timeline

1 total obs
Feb 15Feb 15

Threat Activity Heatmap

· Peak: 2026-02-15
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated

The domain ebay-mall.xyz has been identified as a critical indicator of compromise (IOC) associated with botnet and malware activities. First observed on April

Threat ScoreHigh Risk
100
SIGNAL
Signal Score
99%
Confidence
6
Reports
First seenApr 7, 2023
Last seenFeb 15, 2026
Verified IOC

VirusTotal

7/ 91vendors flagged
8% detection rateJun 8, 2026

WHOIS

description
For POC
domain rank
-1
raw
Create date: 2023-02-21 00:00:00 Domain name: ebay-mall.xyz Domain registrar id: 3775 Domain registrar url: http://www.alibabacloud.com Expiry date: 2024-02-21 00:00:00 Name server 1: TADEO.NS.CLOUDFLARE.COM Name server 2: NELLY.NS.CLOUDFLARE.COM Query time: 2023-02-23 00:19:04 Registrant company: 4de2d6669fedd56b Registrant country: Cambodia Registrant email: c3e4472e8f320a6ds@ Registrant state: c922620e719510c2 Update date: 2023-02-21 00:00:00
references
https://malware-filter.gitlab.io/malware-filter/phishing-filter-domains.txt
subdomains count
0

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 3 years ago · Last seen 3 months ago
Appeared in 6 threat reports