DomainMediumSignal 77/100
oberkvisthalden.pro
Location
First Seen
Apr 15, 2026
Last Seen
Jun 2, 2026
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
77%
Signal Score
77 / 100
IDS Rule
No
Threat Context
Tags
Feed Intelligence Summary
8 reports77% confidence
8
Source reports
77%
Confidence score
Category tags
europeindicatornetworknorth americaphishpolandpolcertresearchedunited states
Activity Timeline
Jun 2Jun 2
Threat Activity Heatmap
· Peak: 2026-06-02LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated
The indicator `oberkvisthalden.pro` represents a significant threat, evidenced by its high risk score of 76.7 and its presence across numerous reputable threat intelligence feeds, including the "Phishing Army Extended Domain List." This widespread detection strongly suggests its involvement in malicious activities such as phishing campaigns, malware distribution, or command and control operations. If this domain is accessed within the organizational network, it could facilitate initial compromis…
Threat ScoreHigh Risk
77
SIGNAL
Signal Score
77%
Confidence
8
Reports
First seenApr 15, 2026
Last seenJun 2, 2026
VirusTotal
Not checked
WHOIS
- description
- See: https://cert.pl/en/warning-list/ (archived version here: https://web.archive.org/web/20231029161224/https://cert.pl/en/posts/2020/03/malicious_domains/)
- domain rank
- -1
- subdomains count
- 0
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 months ago · Last seen 18 days ago
Appeared in 8 threat reports