IOC Radar
DomainMediumSignal 66/100

ikores.sbs

Location
GermanyGermany
First Seen
Dec 5, 2024
Last Seen
Jun 8, 2026
Dec 5
First Seen
553d ago
Jun 8
Last Seen
2d ago
13
Reports
source reports
66%
Confidence
medium
Found in 13 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
66%
Signal Score
66 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

81 techniques

Feed Intelligence Summary

13 reports66% confidence
13
Source reports
66%
Confidence score
Category tags
abuseaccount brute forceactive scanningaerospace & defenseanomalyaptattackauthentication attackauthentication attemptautoitbase64 encodingbotnetbrute forcebrute force attackc serverc2c2 communicationc2 fourthstagec2 httpc2s indicatorcivil servicescode injectioncommand and controlcommand executioncommunication protocolcommunication technologiescompromised websitecompromised websitescredential accesscredential harvestingcredential stealercredential stuffingcredential theftctadata exfiltrationdata theftdefensedefense contractingdefense logisticsdefense systemsdefense technologydenial of servicediscorddistributed attacksdoenerium stealerdrive-by compromisedropperencryptenergyenergy distributionenterprise securityeuropeevasion techniquesfourth stage malwareftpftp brute forcegermanygithubgithub hostinggovernment technologyhigher educationhttp attackhttp brute forcehttp scannerhttpsillegal streaming sitesimapindicatorinformation stealerinformation stealinginformation stealing malwareinformation technologyinfostealerinfrastructure acquisitionreconnaissanceinput validation bypassit infrastructurelarge-scale infostealer campaignlummalumma stealermalicious activitymalicious linksmalicious powershell activitymalicious softwaremalvertisingmalwaremalware deliverymalware-as-a-servicemicrosoft defendermilitary operationsmobile carriersmobile networksmulti-stage attacknational securitynetsupport ratnetworknetwork activitynetwork attacksnetwork protocolnetwork reconnaissancenetwork scanningnetwork securitynsisoil & gasoil and gasoperating systempassword attackspatch managementpath traversalphishingphishing attackpower generationpower systemsprocess injectionprojectprotocol exploitationpsexecpublic administrationpublic infrastructurepublic policyratreconnaissanceregulatory agenciesremote access trojanrenewable energyresearchedscanning activityscripting attackssecond stage malwaresectopratserviceservice exploitationsmtpsocial engineeringsoftware developmentsoftware vulnerabilitiesssh attackstargazer goblinstorm-0408t1003t1003.001t1005t1012t1016t1018t1021t1021.001t1027t1033t1036t1040t1041t1046t1047t1049t1053t1053.005t1055t1056t1056.001t1057t1059t1059.001t1059.003t1059.005t1059.007t1069.001t1071t1071.001t1074t1078t1082t1083t1086t1087t1090t1104t1105t1110t1110.001t1110.002t1110.003t1110.004t1113t1123t1125t1127t1140t1176t1189t1190t1204t1204.001t1204.002t1218.005t1486t1496t1499.002t1499.003t1546t1547t1547.001t1553t1555t1565t1566t1566.001t1566.002t1566.003t1584t1587.001t1588t1588.002t1588.006t1589t1590.001t1595t1595.001t1595.002t1595.003tabletcp protocoltelecom servicestelecommunicationstelnet threatthreat actortimegeneratedtrojanspytwittertypetype httptype httpsurls indicatoruser agentvidarweb application exploitationweb exploitationweb securityweb traffic

Activity Timeline

1 total obs
Jun 8Jun 8

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
1
Minimal
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated

The domain **ikores.sbs** has emerged as a significant indicator of compromise (IOC) associated with multiple cyber threats originating from Germany. First observed on December

Threat ScoreMedium Risk
66
SIGNAL
Signal Score
66%
Confidence
13
Reports
First seenDec 5, 2024
Last seenJun 8, 2026

VirusTotal

Not checked

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 2 days ago
Appeared in 13 threat reports