IOC Radar
DomainMediumSignal 73/100

oldtimer-service.net

Location
PolandPoland
First Seen
Apr 14, 2026
Last Seen
Jun 3, 2026
Apr 14
First Seen
60d ago
Jun 3
Last Seen
11d ago
7
Reports
source reports
73%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
73%
Signal Score
73 / 100
IDS Rule
No
Threat Context
Tags

Feed Intelligence Summary

7 reports73% confidence
7
Source reports
73%
Confidence score
Category tags
europegermanyindicatornetworkphishpolandpolcertresearched

Activity Timeline

1 total obs
Jun 3Jun 3

Threat Activity Heatmap

· Peak: 2026-06-03
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated

The domain `oldtimer-service.net` has been identified as a high-severity Indicator of Compromise (IOC) with a score of 72.91. Its inclusion in multiple reputable threat intelligence feeds, such as the Phishing Army Extended Domain List and CERT.PL's list of malicious domains, strongly suggests its active use in hostile campaigns. The presence of this IOC in an organizational environment could indicate ongoing phishing attempts, malware distribution, or command-and-control (C2) communication with…

Threat ScoreHigh Risk
73
SIGNAL
Signal Score
73%
Confidence
7
Reports
First seenApr 14, 2026
Last seenJun 3, 2026

VirusTotal

Not checked

WHOIS

description
See: https://cert.pl/en/warning-list/ (archived version here: https://web.archive.org/web/20231029161224/https://cert.pl/en/posts/2020/03/malicious_domains/)
domain rank
-1
raw
Create date: 2026-04-11 00:00:00 Domain name: oldtimer-service.net Domain registrar id: 3862.0 Domain registrar url: http://www.spaceship.com Expiry date: 2027-04-11 00:00:00 Query time: 2026-04-13 13:52:25 Update date: 2026-04-11 00:00:00
subdomains count
1

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 11 days ago
Appeared in 7 threat reports