IOC Radar
DomainMediumSignal 47/100

ecotopo.com

Location
United StatesUnited States
First Seen
Jul 5, 2023
Last Seen
Jun 12, 2026
Jul 5
First Seen
1083d ago
Jun 12
Last Seen
10d ago
12
Reports
source reports
47%
Confidence
medium
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
47%
Signal Score
47 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

45 techniques

Feed Intelligence Summary

12 reports47% confidence
12
Source reports
47%
Confidence score
Category tags
active scanactive scanningattachment phishingauthentication attackbecbec attackbotnetbotnet activitybrand impersonationbrute forcebusiness email compromisebusiness_email_compromisec2command & controlcommand and controlcredential accesscredential harvestingcredential phishingcredential stuffingcredential theftcredential_harvestingdata exfiltrationdata store exposureddosdenial of servicedistributed attacksemail-based attackexploitation activityfraudulent websiteftp brute forcehttp brute forcehydra attackidentity & access exploitationindicatorinitial accessinjection activityiocslink injectionlink manipulationlink obfuscationlogin attacklogin attemptsmalicious attachmentmalicious attachmentsmalicious domainmalicious linksmalicious softwaremalwaremalware deliverymalware distributionmedusa attacknetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork service scanningnmap scannorth americaphishingphishing attackphishing campaignphishing-databaseprocess injectionprotocol exploitationransomwarerdp scanningreconnaissancereconnaissance activityremote accessremote servicesresearchedscams & fraudservice enumerationservice scansmb scanningsmtp brute forcesocial engineeringssh attacksyn scant1018t1021t1021.001t1021.002t1040t1046t1055t1059t1059.001t1059.004t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1189t1190t1192t1204t1204.001t1486t1496t1499.002t1499.003t1534t1552.001t1563t1565t1566t1566.001t1566.002t1566.003t1566.004t1588.002t1589t1589.002t1592t1595t1595.001t1595.002t1595.003t1598t1598.003tcp scantcp scanningtelnet threatthreat intelligence feedthreat_actor_activitytor nodeudp scanunited statesvulnerability scanweb securitywhaling attack

Activity Timeline

1 total obs
Jun 12Jun 12

Threat Activity Heatmap

· Peak: 2026-06-12
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated

The domain **ecotopo.com**, originating from the United States, has emerged as a significant indicator of compromise (IOC) in recent threat intelligence reports. First observed on July

Threat ScoreMedium Risk
47
SIGNAL
Signal Score
47%
Confidence
12
Reports
First seenJul 5, 2023
Last seenJun 12, 2026

VirusTotal

Not checked

WHOIS

description
LTNA Cyber provides additional enrichment for domain and URL indicators, including RIR and DNS intelligence, domain registration context, routing verification, BGP stream visibility, and GeoIP/ISP attribution. Learn more: https://ltna.com.au/cyber
domain rank
-1
raw
Administrative city: Reykjavik Administrative country: Iceland Administrative email: [email protected] Administrative state: Capital Region Create date: 2025-05-20 00:00:00 Domain name: ecotopo.com Domain registrar id: 1068 Domain registrar url: http://www.namecheap.com Expiry date: 2026-05-20 00:00:00 Name server 1: ns2.bodis.com Name server 2: ns3.bd-verify-gu7sqsxf6r.click Name server 3: ns1.bodis.com Query time: 2025-05-21 12:50:57 Registrant city: ddbf76e4e8cee320 Registrant company: 4b7a0912c26a13e2 Registrant country: Iceland Registrant email: [email protected] Registrant name: 37bfbc24cafea5d2 Registrant phone: ef7c9ebdb324979a Registrant state: 3e0204199d8ebf9c Registrant zip: f206c9d9737ad45d Technical city: Reykjavik Technical country: Iceland Technical email: [email protected] Technical state: Capital Region Update date: 2025-05-20 00:00:00
references
https://malware-filter.gitlab.io/malware-filter/phishing-filter-domains.txt
subdomains count
8

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 3 years ago · Last seen 10 days ago
Appeared in 12 threat reports