IOC Radar
DomainMediumSignal 42/100

mlf-wn.com

Location
Hong KongHong Kong
First Seen
Apr 17, 2026
Last Seen
Apr 23, 2026
Apr 17
First Seen
58d ago
Apr 23
Last Seen
52d ago
4
Reports
source reports
42%
Confidence
medium
Found in 4 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
42%
Signal Score
42 / 100
IDS Rule
No
Threat Context
Tags

Feed Intelligence Summary

4 reports42% confidence
4
Source reports
42%
Confidence score
Category tags
asiadgahong kongindicatornetworkresearched

Activity Timeline

1 total obs
Apr 23Apr 23

Threat Activity Heatmap

· Peak: 2026-04-23
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated

This Indicator of Compromise (IOC), `mlf-wn.com`, represents a significant threat primarily associated with phishing and scam activities, as indicated by its inclusion in multiple threat intelligence feeds and an explicit `Phishing & scam domain names` pulse. The domain's elevated score of 41.76 suggests a heightened likelihood of malicious intent, warranting immediate attention and defensive action. If successfully leveraged, this domain could be used to host deceptive content, tricking unsuspe…

Threat ScoreMedium Risk
42
SIGNAL
Signal Score
42%
Confidence
4
Reports
First seenApr 17, 2026
Last seenApr 23, 2026

VirusTotal

Not checked

WHOIS

description
Phishing, scams, all junk goes here.
domain rank
-1
raw
Administrative country: Germany Create date: 2020-04-12 00:00:00 Domain name: mlf-wn.com Domain registrar id: 1923 Domain registrar url: https://rdap.gname.com/ Expiry date: 2027-04-12 00:00:00 Query time: 2026-04-16 02:32:04 Registrant country: Germany Registrant name: 37bfbc24cafea5d2 Technical country: Germany Update date: 2026-04-13 00:00:00
subdomains count
1

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 month ago · Last seen 1 month ago
Appeared in 4 threat reports