IOC Radar
DomainMediumSignal 77/100

plwpnn.com

Location
PolandPoland
First Seen
Apr 15, 2026
Last Seen
Jun 3, 2026
Apr 15
First Seen
60d ago
Jun 3
Last Seen
12d ago
8
Reports
source reports
77%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
77%
Signal Score
77 / 100
IDS Rule
No
Threat Context
Tags

Feed Intelligence Summary

8 reports77% confidence
8
Source reports
77%
Confidence score
Category tags
dgaeuropeindicatornetworknorth americaphishpolandpolcertresearchedunited states

Activity Timeline

1 total obs
Jun 3Jun 3

Threat Activity Heatmap

· Peak: 2026-06-03
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated

The domain `plwpnn.com` has been identified as a critical Indicator of Compromise (IOC), carrying a high threat score of 76.7 and lacking whitelist status, indicating a significant and immediate risk to organizational security. Its presence across multiple reputable threat intelligence feeds, prominently including the "Phishing Army Extended Domain List," strongly implicates its role in malicious activities such as sophisticated phishing campaigns, malware distribution, or serving as command-and…

Threat ScoreHigh Risk
77
SIGNAL
Signal Score
77%
Confidence
8
Reports
First seenApr 15, 2026
Last seenJun 3, 2026

VirusTotal

Not checked

WHOIS

description
See: https://cert.pl/en/warning-list/ (archived version here: https://web.archive.org/web/20231029161224/https://cert.pl/en/posts/2020/03/malicious_domains/)
domain rank
-1
subdomains count
0

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 12 days ago
Appeared in 8 threat reports