DomainHighVerifiedSignal 65/100
servicewrap-go.com
Location
First Seen
Apr 15, 2025
Last Seen
May 9, 2026
Found in 5 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
65%
Signal Score
65 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
5 reports65% confidence
5
Source reports
65%
Confidence score
Category tags
active scanai generated spamai spamakiraakirabotanti-detectionautomated attackbad reputationblackbastabotnetbotnet activitybrute forcebrute force attackcaptchacaptcha bypasscommand and controlcommunication technologiescontent injectioncredential accesscredential stuffingcyber threatsdata exfiltrationdata store exposuredistributed attacksevasionevasion techniquesexploitation activityfinancefinancial servicesidentity & access exploitationindicatorinformation technologyinjection activityit infrastructuremalicious softwaremalwaremobile carriersmobile networksmodelnetworknorth americapassword attacksprocess injectionproxypythonpython botransomwarereamazereamaze api abuseresearchedseo spamshadowsmartproxysoftware developmentspamspam bott1027t1036t1055t1056t1059t1071t1071.001t1071.004t1078t1090t1110.001t1110.002t1110.003t1110.004t1134t1140t1199t1486t1496t1497t1499.001t1499.002t1499.003t1547t1565t1566t1566.001t1574t1583.001t1588telecom servicestelecommunicationsthreat actortor nodeunited statesvoiceweb applicationweb application attackweb injection
Activity Timeline
May 9May 9
Threat Activity Heatmap
· Peak: 2026-05-09LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated
The domain **servicewrap-go.com**, originating from the United States, has been identified as a critical indicator of compromise (IOC) associated with multiple cyber threats. First observed on April
Threat ScoreMedium Risk
65
SIGNAL
Signal Score
65%
Confidence
5
Reports
First seenApr 15, 2025
Last seenMay 9, 2026
Verified IOC
VirusTotal
Not checked
WHOIS
- description
- Akirabot is a sophisticated Python framework has successfully targeted websites using advanced techniques to bypass security measures and deliver AI-generated spam.
- domain rank
- -1
- raw
- Administrative city: Reykjavik Administrative country: Iceland Administrative email: [email protected] Administrative state: Capital Region Create date: 2024-11-30 00:00:00 Domain name: servicewrap-go.com Domain registrar id: 1068 Domain registrar url: http://www.namecheap.com Expiry date: 2025-11-30 00:00:00 Name server 1: dns2.namecheaphosting.com Name server 2: dns1.namecheaphosting.com Query time: 2024-12-01 15:22:53 Registrant city: ddbf76e4e8cee320 Registrant company: 4b7a0912c26a13e2 Registrant country: Iceland Registrant email: [email protected] Registrant name: 37bfbc24cafea5d2 Registrant phone: 8887f09f69a004c2 Registrant state: 3e0204199d8ebf9c Registrant zip: f206c9d9737ad45d Technical city: Reykjavik Technical country: Iceland Technical email: [email protected] Technical state: Capital Region Update date: 2024-11-30 00:00:00
- references
- https://www.sentinelone.com/labs/akirabot-ai-powered-bot-bypasses-captchas-spams-websites-at-scale, April 11th, 2025 - CryptoGen Cyber Threat Intelligence Advisory #6914 - AkiraBot Spammed Websites by using Evasion Techniques.
- subdomains count
- 6
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 1 year ago · Last seen 1 month ago
Appeared in 5 threat reports