IOC Radar
DomainMediumSignal 75/100

edenparkweddings.com

Location
GermanyGermany
First Seen
Aug 16, 2023
Last Seen
Apr 23, 2026
Aug 16
First Seen
1034d ago
Apr 23
Last Seen
54d ago
10
Reports
source reports
75%
Confidence
medium
Found in 10 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
75%
Signal Score
75 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

18 techniques

Feed Intelligence Summary

10 reports75% confidence
10
Source reports
75%
Confidence score
Category tags
accessadam burgherandroidaptapt29apt35asiaaustraliaballistic bobcatbluebravobobcatbotnetbotnet activitybrazilburgherc serverc2charming kittencheck pointchiselcisacloaked ursacobalt illusioncobalt strikecollaborationcommand & controlcommand and controlcomputer securitycorecozy bearcritical industriescritical infrastructurecvss scorecyber attackscyber newscyber security newscyber security updatescyber updatesdata breachdata exfiltrationdata store exposuredesktopdistributed attacksdomainurl httpsdukeduke malwareeducationembassyemiratesenergyenigmaeset researcheset researchereuropeexploitation activityfederal officefinance and insurancefirstforeign affairsformatgermanyhacker newshacking newshasheshow to hackhuman rightsindicatorinformation securityinjection activityiot securityiranitg18lazaruslearnmalicious softwaremalwaremediamedicalmerlinmint sandstormmobile threatneednetworknetwork securitynotionoceaniaoilrigopen sourcepartnerpdf filephosphorusplinkprocess injectionproxyproxyshellransomwareransomware malwareresearchedserviceshellsingaporesoftware vulnerabilitysouth americasponsorsponsoring accessstixt1027t1036t1055t1071t1071.001t1106t1134t1204t1218t1486t1496t1499.002t1499.003t1543t1565t1566t1574t1584ta453teamtelecommunicationsthe hacker newsthreat actortipstor nodetwitterukraineunited arabvulnerability scanwindiryellow garudazulip

Activity Timeline

1 total obs
Apr 23Apr 23

Threat Activity Heatmap

· Peak: 2026-04-23
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreHigh Risk
75
SIGNAL
Signal Score
75%
Confidence
10
Reports
First seenAug 16, 2023
Last seenApr 23, 2026

VirusTotal

Not checked

WHOIS

registrar
GoDaddy.com, LLC
domain rank
-1
raw
Creation Date: 2018-05-01T17:51:14Z DNSSEC: unsigned Domain Name: EDENPARKWEDDINGS.COM Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited Domain Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited Name Server: NS27.DOMAINCONTROL.COM Name Server: NS28.DOMAINCONTROL.COM Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: 480-624-2505 Registrar IANA ID: 146 Registrar URL: http://www.godaddy.com Registrar WHOIS Server: whois.godaddy.com Registrar: GoDaddy.com, LLC Registry Domain ID: 2258913505_DOMAIN_COM-VRSN Registry Expiry Date: 2026-05-01T17:51:14Z Updated Date: 2024-04-27T08:42:24Z
references
https://blog.eclecticiq.com/german-embassy-lure-likely-part-of-campaign-against-nato-aligned-ministries-of-foreign-affairs, IOCs.April.pdf, September 13th, 2023 - CryptoGen Cyber Threat Intelligence Advisory #3227 - Charming Kitten's New Backdoor, https://thehackernews.com/2023/08/nofilter-attack-sneaky-privilege.html, https://therecord.media/illinois-hospital-notifies-patients-employees-of-cyber-incident?&web_view=true, August 18th, 2023 - CryptoGen Cyber Threat Intelligence Advisory #3074 - Malicious PDF Documents Used to Target NATO countries.pdf
subdomains count
79

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 years ago · Last seen 1 month ago
Appeared in 10 threat reports