DomainMediumSignal 40/100
muralys.com
Location
First Seen
Sep 28, 2023
Last Seen
Jun 6, 2026
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
40%
Signal Score
40 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
8 reports40% confidence
8
Source reports
40%
Confidence score
Category tags
active scanattachment based phishingattachment deliveryattachment phishingbad reputationbecbec phishingbotnetbotnet activitybrand abusebrand impersonationbrute forcebusiness email compromisecommand and controlcredential harvestingcredential phishingcredential stuffingcredential theftcredential_harvestingdata exfiltrationdata store exposuredeceptive tacticsdistributed attacksexploitation activityfraudfraudulent activityidentity & access exploitationindicatorinfrastructure acquisitionreconnaissanceinjection activityiot securitylink injectionlink manipulationlink spoofingmalicious attachmentmalicious linksmalicious softwaremalicious websitemalicious_urlmalspammalwaremalware deliverymalware distributionmalware phishingnetflixnetflix phishing campaignnetworknorth americaphishingphishing attackphishing-databaseprocess injectionransomwareresearchedscamscams & fraudsecurity operationssocial engineeringspamspearphishingt1055t1071t1071.001t1078t1189t1192t1204t1204.001t1204.002t1486t1496t1499.002t1499.003t1534t1565t1566t1566.001t1566.002t1566.003t1566.004t1587.001t1590.001t1598t1598.003threat intelligencethreat_indicatorstor nodeunited statesurlsweb securitywhaling phishing
Activity Timeline
Jun 6Jun 6
Threat Activity Heatmap
· Peak: 2026-06-06LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated
The domain **muralys.com**, originating from the United States, has emerged as a significant indicator of compromise (IOC) in recent threat intelligence reports. First observed on September
Threat ScoreLow Risk
40
SIGNAL
Signal Score
40%
Confidence
8
Reports
First seenSep 28, 2023
Last seenJun 6, 2026
VirusTotal
Not checked
WHOIS
- registrar
- GoDaddy.com, LLC
- description
- LTNA Cyber provides additional enrichment for domain and URL indicators, including RIR and DNS intelligence, domain registration context, routing verification, BGP stream visibility, and GeoIP/ISP attribution. Learn more: https://ltna.com.au/cyber
- domain rank
- -1
- raw
- Creation Date: 2013-01-28T07:32:48Z DNSSEC: unsigned Domain Name: MURALYS.COM Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited Domain Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited Name Server: NS25.DOMAINCONTROL.COM Name Server: NS26.DOMAINCONTROL.COM Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: 480-624-2505 Registrar IANA ID: 146 Registrar URL: http://www.godaddy.com Registrar WHOIS Server: whois.godaddy.com Registrar: GoDaddy.com, LLC Registry Domain ID: 1776732950_DOMAIN_COM-VRSN Registry Expiry Date: 2028-01-28T07:32:48Z Updated Date: 2024-01-27T06:10:38Z
- references
- https://www.virustotal.com/gui/collection/8d1559301ff7ccf0d26c823bfcb6748986a446f296c9782ef890d227b2966be6, https://malware-filter.gitlab.io/malware-filter/phishing-filter-domains.txt
- subdomains count
- 13
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 years ago · Last seen 7 days ago
Appeared in 8 threat reports