IOC Radar
DomainHighVerifiedSignal 37/100

edehat.com

Location
United StatesUnited States
First Seen
Jun 5, 2020
Last Seen
Jun 4, 2026
Jun 5
First Seen
2199d ago
Jun 4
Last Seen
9d ago
6
Reports
source reports
37%
Confidence
high
Found in 6 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
37%
Signal Score
37 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

45 techniques

Feed Intelligence Summary

6 reports37% confidence
6
Source reports
37%
Confidence score
Category tags
active scanactive scanningattachment phishingauthentication attackbecbec attackbotnetbotnet activitybrand impersonationbrute forcebusiness email compromisebusiness_email_compromisecommand and controlcredential accesscredential harvestingcredential phishingcredential stuffingcredential theftcredential_harvestingdata exfiltrationdata store exposureddosdenial of servicedistributed attacksemail-based attackexploitation activityfraudulent websiteftp brute forcehttp brute forcehydra attackidentity & access exploitationindicatorinitial accessinjection activityiocslink injectionlink manipulationlink obfuscationlogin attacklogin attemptsmalicious attachmentmalicious attachmentsmalicious domainmalicious linksmalicious softwaremalwaremalware deliverymalware distributionmedusa attacknetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork service scanningnmap scannorth americaphishingphishing attackphishing campaignphishing-databaseprocess injectionprotocol exploitationransomwarerdp scanningreconnaissancereconnaissance activityremote accessremote servicesresearchedscams & fraudservice enumerationservice scansmb scanningsmtp brute forcesocial engineeringssh attacksyn scant1018t1021t1021.001t1021.002t1040t1046t1055t1059t1059.001t1059.004t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1189t1190t1192t1204t1204.001t1486t1496t1499.002t1499.003t1534t1552.001t1563t1565t1566t1566.001t1566.002t1566.003t1566.004t1588.002t1589t1589.002t1592t1595t1595.001t1595.002t1595.003t1598t1598.003tcp scantcp scanningtelnet threatthreat intelligence feedthreat_actor_activitytor nodeudp scanunited statesvulnerability scanweb securitywhaling attack

Activity Timeline

1 total obs
Jun 4Jun 4

Threat Activity Heatmap

· Peak: 2026-06-04
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreLow Risk
37
SIGNAL
Signal Score
37%
Confidence
6
Reports
First seenJun 5, 2020
Last seenJun 4, 2026
Verified IOC

VirusTotal

Not checked

WHOIS

description
LTNA Cyber provides additional enrichment for domain and URL indicators, including RIR and DNS intelligence, domain registration context, routing verification, BGP stream visibility, and GeoIP/ISP attribution. Learn more: https://ltna.com.au/cyber
domain rank
-1
raw
Administrative city: Shimla Administrative country: India Administrative email: [email protected] Administrative state: Himachal Pradesh Create date: 2025-02-28 00:00:00 Domain name: edehat.com Domain registrar id: 1495 Domain registrar url: www.bigrock.com Expiry date: 2028-02-28 00:00:00 Name server 1: dns3.bigrock.in Name server 2: dns2.bigrock.in Name server 3: dns1.bigrock.in Name server 4: dns4.bigrock.in Query time: 2025-03-01 11:38:25 Registrant city: 5c7e3e21cb76f23f Registrant company: 167711b01279cd21 Registrant country: India Registrant email: [email protected] Registrant name: e1a0412483605499 Registrant phone: 5eb1a4e737336329 Registrant state: 474f98565c5c27ed Registrant zip: 8251c0606e355537 Technical city: Shimla Technical country: India Technical email: [email protected] Technical state: Himachal Pradesh Update date: 2025-02-28 00:00:00
subdomains count
0

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 6 years ago · Last seen 9 days ago
Appeared in 6 threat reports