DomainMediumSignal 0/100
savefrom.net
Location
First Seen
Sep 12, 2025
Last Seen
Mar 19, 2026
Found in 1 report. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
0%
Signal Score
0 / 100
IDS Rule
No
Threat Context
Tags
Feed Intelligence Summary
1 report0% confidence
1
Source reports
0%
Confidence score
Category tags
indicatornetworkresearched
Activity Timeline
Mar 19Mar 19
Threat Activity Heatmap
· Peak: 2026-03-19LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated
The domain `savefrom.net` has been identified as an Indicator of Compromise (IOC) within threat intelligence feeds; however, it holds a score of 0.0 and is explicitly marked as whitelisted. This categorization indicates that the domain is benign and does not pose a direct security threat to the organization. Its inclusion in threat intelligence does not, by itself, signify hostile behavior or an active compromise, nor does it necessitate urgent containment or incident response actions. The poten…
Threat ScoreLow Risk
0
SIGNAL
Signal Score
0%
Confidence
1
Reports
First seenSep 12, 2025
Last seenMar 19, 2026
VirusTotal
Not checked
WHOIS
- registrar
- TUCOWS.COM, CO.
- creation date
- 2008-03-12T19:50:58
- expiration date
- 2029-03-12T19:50:58
- updated date
- 2026-05-20T15:06:24
- name servers
- KIANCHAU.NS.CLOUDFLARE.COM, KIRA.NS.CLOUDFLARE.COM
- country
- KN
- emails
- [email protected]
- org
- REDACTED FOR PRIVACY
- status
- clientTransferProhibited https://icann.org/epp#clientTransferProhibited, clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 9 months ago · Last seen 3 months ago
Appeared in 1 threat report