IOC Radar
DomainMediumSignal 70/100

safemanagementatforiawdfield.vu

Location
United StatesUnited States
First Seen
Jun 9, 2026
Last Seen
Jun 18, 2026
Jun 9
First Seen
10d ago
Jun 18
Last Seen
yesterday
8
Reports
source reports
70%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
70%
Signal Score
70 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

20 techniques

Feed Intelligence Summary

8 reports70% confidence
8
Source reports
70%
Confidence score
Category tags
brute forcecredential harvestingcredential stuffingcryptocryptocurrencydestroylist_phishingdgadomainsexploitation activityidentity & access exploitationindicatorlivemicrosoft 365monthlynetworknorth americaoauth hijackingphishingphishing-as-a-serviceresearchedscamscams & fraudsso exploitationt1027t1036.005t1056.003t1071.001t1102.002t1132.001t1185t1204.001t1219t1528t1539t1550.001t1566t1566.001t1566.002t1583.001t1584.004t1598.002t1598.003t1608.001united statesvoicemail phishing

Activity Timeline

1 total obs
Jun 18Jun 18

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
1
Minimal
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated

The domain **safemanagementatforiawdfield.vu** has emerged as a significant indicator of compromise (IOC) linked to phishing activities originating from the United States. First observed on June

Threat ScoreMedium Risk
70
SIGNAL
Signal Score
70%
Confidence
8
Reports
First seenJun 9, 2026
Last seenJun 18, 2026

VirusTotal

Not checked

WHOIS

registrar
DYNADOT LLC
domain rank
-1
raw
Admin City: San Mateo Admin Country: US Admin Email: [email protected] Admin Organization: Dynadot, LLC Admin Organization: Super Privacy Service LTD c/o Dynadot Admin Postal Code: 94401 Admin State/Province: California Creation Date: 2026-06-03T17:21:31.0Z Creation Date: 2026-06-03T17:21:31Z DNSSEC: unsigned Domain Name: SAFEMANAGEMENTATFORIAWDFIELD.VU Domain Name: safemanagementatforiawdfield.vu Domain Status: addPeriod https://icann.org/epp#addPeriod Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: serverTransferProhibited https://icann.org/epp#serverTransferProhibited Name Server: heather.ns.cloudflare.com Name Server: sullivan.ns.cloudflare.com Registrant City: 3715f4e2b12e17cb Registrant Country: US Registrant Email: [email protected] Registrant Email: e1b32cec895142d9s@ Registrant Fax Ext: 3432650ec337c945 Registrant Fax: 3432650ec337c945 Registrant Name: 037fe422b392eb3f Registrant Name: 1f8f4166599d23ee Registrant Organization: 473daf17453d83cd Registrant Phone Ext: 3432650ec337c945 Registrant Phone: dd8b86e7cf387e10 Registrant Postal Code: ae51fcfbe03bd2c4 Registrant State/Province: 77ab92f1911d7c5f Registrant Street: 3432650ec337c945 Registrant Street: 8a188706046fdffa Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: +1.6502620100 Registrar IANA ID: 472 Registrar Registration Expiration Date: 2027-06-03T17:21:31.0Z Registrar URL: http://www.dynadot.com Registrar URL: https://www.dynadot.com/ Registrar WHOIS Server: whois.dynadot.com Registrar: DYNADOT LLC Registrar: Dynadot Inc Registry Admin ID: CCDC197DB753B40D9B072815AB124CF6E-ARI Registry Domain ID: DB53D182085C24750A2E238A897010B41-GDREG Registry Expiry Date: 2027-06-03T17:21:31Z Registry Registrant ID: C69AEA5C4330B4B0EB62FD5BFC60AB8C7-GDREG Registry Tech ID: C69AEA5C4330B4B0EB62FD5BFC60AB8C7-GDREG Tech City: San Mateo Tech Country: US Tech Email: [email protected] Tech Organization: Super Privacy Service LTD c/o Dynadot Tech Postal Code: 94401 Tech State/Province: California Updated Date: 2026-06-03T19:55:33.0Z Updated Date: 2026-06-03T19:55:33Z
references
https://x.com/Kb4Threatlabs/status/2064374959989043207
subdomains count
0

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 10 days ago · Last seen 1 day ago
Appeared in 8 threat reports