DomainHighVerifiedSignal 48/100
satanal.info
First Seen
Feb 26, 2021
Last Seen
Feb 19, 2026
Found in 5 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
48%
Signal Score
48 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
5 reports48% confidence
5
Source reports
48%
Confidence score
Category tags
active scanningbotnetbrute forcec2 domaincommand and controlcommunication protocolcredential accesscredential harvestingcredential stuffingdata exfiltrationdenial of servicedistributed attacksftpftp brute forcehttp scannerindicatorlogin attemptmalicious softwaremalwaremalware familynetworknetwork attacksnetwork protocolnetwork scanningnetwork service scanningpassword attackphishing attackprocess injectionreconnaissanceremote accessremote servicesresearchedservice enumerationsocial engineeringssh attackt1001t1001.001t1001.002t1021t1021.001t1040t1041t1046t1055t1059t1059.001t1071t1071.001t1076t1078t1105t1110t1110.001t1110.002t1190t1486t1496t1499.002t1499.003t1563t1565t1566.001t1566.002t1566.003t1568t1568.002t1595t1595.001t1595.002t1595.003tcp protocolunsuccessful login attemptsweb trafficwin32 malwarewindows malware
Activity Timeline
Feb 19Feb 19
Threat Activity Heatmap
· Peak: 2026-02-19LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated
The domain **satanal.info** has been identified as a critical indicator of compromise (IOC) associated with botnet and malware activities. First observed on February
Threat ScoreMedium Risk
48
SIGNAL
Signal Score
48%
Confidence
5
Reports
First seenFeb 26, 2021
Last seenFeb 19, 2026
Verified IOC
VirusTotal
Not checked
WHOIS
- description
- Command and Control domains for malware known as Win32.Beaugrit.gen.AAA. These domains are extracted from malware sandbox reports using a Machine Learning model trained on a corpus of good and bad domains.
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 5 years ago · Last seen 4 months ago
Appeared in 5 threat reports