DomainMediumSignal 43/100
ebay230.shop
First Seen
May 15, 2024
Last Seen
Mar 9, 2026
Found in 10 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
43%
Signal Score
43 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
10 reports43% confidence
10
Source reports
43%
Confidence score
Category tags
active scanningattachment phishingattackauthentication attackbotnetbrand impersonationbrute forcebusiness email compromisecommand and controlcredential accesscredential harvestingcredential harvesting phishingcredential phishingcredential stuffingcredential theftdata exfiltrationdenial of servicedgadistributed attacksftp brute forcehttp brute forcehydra attackindicatorlink injectionlink manipulationlink redirectionlink redirection phishinglogin attacklogin attemptsmalicious activitymalicious linkmalicious softwaremalwaremalware deliverymalware delivery phishingmalware distributionmalware phishingmedusa attacknetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork service scanningnmap scanphishingphishing attackphishing-databaseprocess injectionprotocol exploitationrdp scanningreconnaissancereconnaissance activityremote accessremote servicesresearchedsecurity awarenessservice enumerationsmb scanningsmtp brute forcesocial engineeringssh attacksyn scant1018t1021t1021.001t1021.002t1040t1046t1055t1059t1059.001t1059.004t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1189t1190t1192t1204.001t1486t1496t1499.002t1499.003t1563t1565t1566t1566.001t1566.002t1566.003t1566.004t1589t1589.002t1592t1595t1595.001t1595.002t1595.003t1598t1598.003tcp scantcp scanningtelnet threatthreat actorudp scanvulnerability scan
Activity Timeline
Mar 9Mar 9
Threat Activity Heatmap
· Peak: 2026-03-09LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreMedium Risk
43
SIGNAL
Signal Score
43%
Confidence
10
Reports
First seenMay 15, 2024
Last seenMar 9, 2026
VirusTotal
Not checked
WHOIS
- description
- For POC
- domain rank
- -1
- raw
- Create date: 2024-04-14 00:00:00 Domain name: ebay230.shop Domain registrar id: 1479.0 Domain registrar url: https://www.namesilo.com Expiry date: 2025-04-14 00:00:00 Name server 1: CLEO.NS.CLOUDFLARE.COM Name server 2: SANDY.NS.CLOUDFLARE.COM Query time: 2024-04-15 12:58:42 Registrant country: United States Registrant state: e1c7c1911395a3cf Update date: 2024-04-14 00:00:00
- references
- https://malware-filter.gitlab.io/malware-filter/phishing-filter-domains.txt
- subdomains count
- 0
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 years ago · Last seen 3 months ago
Appeared in 10 threat reports