IOC Radar
DomainMediumSignal 53/100

ops-ca.mioying.com

First Seen
Jan 17, 2024
Last Seen
Feb 19, 2026
Jan 17
First Seen
891d ago
Feb 19
Last Seen
126d ago
3
Reports
source reports
53%
Confidence
medium
Found in 3 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
53%
Signal Score
53 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

7 techniques

Feed Intelligence Summary

3 reports53% confidence
3
Source reports
53%
Confidence score
Category tags
botnetcommand and controldata exfiltrationdistributed attacksindicatormalicious softwaremalwarenetworkprocess injectionresearchedt1055t1071.001t1486t1496t1499.002t1499.003t1565

Activity Timeline

1 total obs
Feb 19Feb 19

Threat Activity Heatmap

· Peak: 2026-02-19
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated

This indicator of compromise (IOC), `ops-ca.mioying.com`, represents a significant threat to organizational security and demands immediate attention. With a score of 52.73 and its explicit association with the advanced persistent threat (APT) group AtlasCross, this domain is highly indicative of malicious activity. Its presence in our environment could signify ongoing command and control communications, data exfiltration attempts, or preparation for further stages of an attack. Such activities c…

Threat ScoreMedium Risk
53
SIGNAL
Signal Score
53%
Confidence
3
Reports
First seenJan 17, 2024
Last seenFeb 19, 2026

VirusTotal

Not checked

WHOIS

registrar
Alibaba Cloud Computing (Beijing) Co., Ltd.
creation date
2016-06-21T21:09:35
expiration date
2027-06-21T21:09:35
updated date
2026-05-28T02:25:40
name servers
DNS23.HICHINA.COM, DNS24.HICHINA.COM
country
CN
status
ok https://icann.org/epp#ok

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 years ago · Last seen 4 months ago
Appeared in 3 threat reports