IOC Radar
DomainHighVerifiedSignal 50/100

kfgjwkho24xiwckcf53x7qyruobbkhx4eqn2c6oe4hprbn23rcp6qcqd.onion

Location
Saudi ArabiaSaudi Arabia
First Seen
Mar 19, 2025
Last Seen
Jun 7, 2026
Mar 19
First Seen
450d ago
Jun 7
Last Seen
5d ago
6
Reports
source reports
50%
Confidence
high
Found in 6 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
50%
Signal Score
50 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

30 techniques

Feed Intelligence Summary

6 reports50% confidence
6
Source reports
50%
Confidence score
Category tags
active scanningapplication layer protocolaptasiabakery desotta thanjavurbakery in thanjavurbarbie cakeblack forestbrute forcebuilding constructioncake ordercakescakes in thanjavurcakes ordercisa kevcommercial real estatecommunication protocolcommunity managementconstruction materialsconstruction safetyconstruction technologycontactcontent sharingcream cakescredential accesscredential stuffingdark webdata encryptiondata exfiltrationdenial of servicedigital platformsdragonforceexploit avaliableextortionfacilities managementfreefree websitefresh creamftpftp brute forcegoogle slideshttp scannerhttpsin the wildindicatorjeanelog4shellmailing-listnetworknetwork attacksnetwork protocolnetwork scanningnetwork securitynetwork service scanningorderphishingphoto cakespossible intrusion attemptpotential compromiseproperty investmentproperty managementprotocol exploitationraasransomwareread morereal estatereal estate developmentreal estate marketreal estate technologyreconnaissanceremote accessremote servicesresearchedresidential real estateresumesaudi arabiasocial analyticssocial mediasocial media marketingsocial media securitysocial networkingssh attacksweetsystem disruptiont1003t1021t1021.001t1040t1046t1059t1070t1071.001t1076t1078t1082t1083t1090t1110t1110.002t1140t1190t1204t1486t1490t1499.002t1499.003t1560t1562t1563t1566t1595t1595.001t1595.002t1595.003tcp protocoltelnet threattemplates freethird-party-advisorytier cakeuser engagementvendor-advisoryweb trafficwhite forest

Activity Timeline

1 total obs
Jun 7Jun 7

Threat Activity Heatmap

· Peak: 2026-06-07
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
1
Minimal
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
50
SIGNAL
Signal Score
50%
Confidence
6
Reports
First seenMar 19, 2025
Last seenJun 7, 2026
Verified IOC

VirusTotal

Not checked

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 1 year ago · Last seen 5 days ago
Appeared in 6 threat reports