DomainMediumSignal 30/100
investsecuritiesgroup.com
Location
First Seen
Jan 11, 2025
Last Seen
Aug 12, 2025
Found in 4 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
30%
Signal Score
30 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
4 reports30% confidence
4
Source reports
30%
Confidence score
Category tags
amfbank fraudbank securitybankingbinary options fraudblacklisted entitiesblacklisted websitebotnetc2command and controlcredential harvestingcredit card servicescryptocurrency frauddata exfiltrationdistributed attackseuropefakefake companiesfake investment platformsfinancefinance and insurancefinancial fraud blacklistfinancial institutionfinancial regulatorfinancial regulator alertfinancial scamfinancial scam blacklistfinancial servicesfinancial technologyforex fraudfrancefraudfraudulent schemefraudulent websitesindicatorinvestinvestment fraudinvestment scamsmalicious softwaremalwarenetworknorth americaonline scamspayment processingphishing attackphishing campaignsponzi schemesprocess injectionrecovery scamrecovery scamsregulatory warningresearchedscamscamssocial engineeringt1055t1071t1071.001t1071.004t1078t1190t1192t1204.002t1486t1496t1499.001t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1573t1588.002t1598t1598.003unauthorized financial servicesunauthorized firmunauthorized websitesunited statesunlicensed companieswealth management
Activity Timeline
Aug 12Aug 12
Threat Activity Heatmap
· Peak: 2025-08-12LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated
The domain **investsecuritiesgroup.com** has emerged as a significant indicator of compromise (IOC) linked to malicious activities originating from the United States. First observed on January
Threat ScoreLow Risk
30
SIGNAL
Signal Score
30%
Confidence
4
Reports
First seenJan 11, 2025
Last seenAug 12, 2025
VirusTotal
Not checked
WHOIS
- description
- https://www.amf-france.org/en/warnings/blacklists | https://protectepargne.amf-france.org
- domain rank
- -1
- raw
- Administrative city: Phoenix Administrative country: United States Administrative email: [email protected] Administrative state: AZ Create date: 2024-06-18 00:00:00 Domain name: investsecuritiesgroup.com Domain registrar id: 1479 Domain registrar url: https://www.namesilo.com/ Expiry date: 2025-06-18 00:00:00 Name server 1: ns1.dnsowl.com Name server 2: ns2.dnsowl.com Name server 3: ns3.dnsowl.com Query time: 2024-06-19 11:50:52 Registrant city: 7a96e04d2a2490b3 Registrant company: 566bb814321610e4 Registrant country: United States Registrant email: [email protected] Registrant name: 1f33d7151e7ebf55 Registrant phone: 6ac4fd1bbf9bd8f0 Registrant state: e1c7c1911395a3cf Registrant zip: c692e0cb8851b160 Technical city: Phoenix Technical country: United States Technical email: [email protected] Technical state: AZ Update date: 2024-06-19 00:00:00
- subdomains count
- 2
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 10 months ago
Appeared in 4 threat reports