IOC Radar
DomainMediumSignal 30/100

investsecuritiesgroup.com

Location
United StatesUnited States
First Seen
Jan 11, 2025
Last Seen
Aug 12, 2025
Jan 11
First Seen
525d ago
Aug 12
Last Seen
313d ago
4
Reports
source reports
30%
Confidence
medium
Found in 4 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
30%
Signal Score
30 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

22 techniques

Feed Intelligence Summary

4 reports30% confidence
4
Source reports
30%
Confidence score
Category tags
amfbank fraudbank securitybankingbinary options fraudblacklisted entitiesblacklisted websitebotnetc2command and controlcredential harvestingcredit card servicescryptocurrency frauddata exfiltrationdistributed attackseuropefakefake companiesfake investment platformsfinancefinance and insurancefinancial fraud blacklistfinancial institutionfinancial regulatorfinancial regulator alertfinancial scamfinancial scam blacklistfinancial servicesfinancial technologyforex fraudfrancefraudfraudulent schemefraudulent websitesindicatorinvestinvestment fraudinvestment scamsmalicious softwaremalwarenetworknorth americaonline scamspayment processingphishing attackphishing campaignsponzi schemesprocess injectionrecovery scamrecovery scamsregulatory warningresearchedscamscamssocial engineeringt1055t1071t1071.001t1071.004t1078t1190t1192t1204.002t1486t1496t1499.001t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1573t1588.002t1598t1598.003unauthorized financial servicesunauthorized firmunauthorized websitesunited statesunlicensed companieswealth management

Activity Timeline

1 total obs
Aug 12Aug 12

Threat Activity Heatmap

· Peak: 2025-08-12
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated

The domain **investsecuritiesgroup.com** has emerged as a significant indicator of compromise (IOC) linked to malicious activities originating from the United States. First observed on January

Threat ScoreLow Risk
30
SIGNAL
Signal Score
30%
Confidence
4
Reports
First seenJan 11, 2025
Last seenAug 12, 2025

VirusTotal

Not checked

WHOIS

description
https://www.amf-france.org/en/warnings/blacklists | https://protectepargne.amf-france.org
domain rank
-1
raw
Administrative city: Phoenix Administrative country: United States Administrative email: [email protected] Administrative state: AZ Create date: 2024-06-18 00:00:00 Domain name: investsecuritiesgroup.com Domain registrar id: 1479 Domain registrar url: https://www.namesilo.com/ Expiry date: 2025-06-18 00:00:00 Name server 1: ns1.dnsowl.com Name server 2: ns2.dnsowl.com Name server 3: ns3.dnsowl.com Query time: 2024-06-19 11:50:52 Registrant city: 7a96e04d2a2490b3 Registrant company: 566bb814321610e4 Registrant country: United States Registrant email: [email protected] Registrant name: 1f33d7151e7ebf55 Registrant phone: 6ac4fd1bbf9bd8f0 Registrant state: e1c7c1911395a3cf Registrant zip: c692e0cb8851b160 Technical city: Phoenix Technical country: United States Technical email: [email protected] Technical state: AZ Update date: 2024-06-19 00:00:00
subdomains count
2

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 10 months ago
Appeared in 4 threat reports