DomainHighVerifiedSignal 72/100
erahitopupikloss.com
Location
First Seen
Oct 3, 2025
Last Seen
Oct 9, 2025
Found in 6 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
72%
Signal Score
72 / 100
IDS Rule
No
Threat Context
Tags
Feed Intelligence Summary
6 reports72% confidence
6
Source reports
72%
Confidence score
Category tags
europeindicatornetherlandsnetworkresearchedself-signedthreatfox iocs
Activity Timeline
Oct 9Oct 9
Threat Activity Heatmap
· Peak: 2025-10-09LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated
The domain **erahitopupikloss.com** has emerged as a significant indicator of compromise (IOC) linked to malicious activities originating from the Netherlands. First observed on October
Threat ScoreHigh Risk
72
SIGNAL
Signal Score
72%
Confidence
6
Reports
First seenOct 3, 2025
Last seenOct 9, 2025
Verified IOC
VirusTotal
Not checked
WHOIS
- domain rank
- -1
- raw
- Administrative city: REDACTED FOR PRIVACY Administrative email: [email protected] to request the domain whois Administrative state: REDACTED FOR PRIVACY Billing city: REDACTED FOR PRIVACY Billing email: [email protected] to request the domain whois Billing state: REDACTED FOR PRIVACY Create date: 2025-10-01 00:00:00 Domain name: erahitopupikloss.com Domain registrar id: 3254 Expiry date: 2026-10-01 00:00:00 Name server 1: mack.ns.cloudflare.com Name server 2: lia.ns.cloudflare.com Query time: 2025-10-02 10:43:40 Registrant address: ea76ee0ae39c6e23 Registrant city: 1f8f4166599d23ee Registrant company: 1f8f4166599d23ee Registrant country: UK Registrant email: [email protected] to request the domain whois Registrant name: 1f8f4166599d23ee Registrant state: f6a05a888fce07f0 Technical city: REDACTED FOR PRIVACY Technical email: [email protected] to request the domain whois Technical state: REDACTED FOR PRIVACY Update date: 2025-10-01 00:00:00
- subdomains count
- 0
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 8 months ago · Last seen 8 months ago
Appeared in 6 threat reports