DomainMediumSignal 25/100
support-royalmail.xyz
First Seen
Mar 4, 2025
Last Seen
May 12, 2025
Found in 4 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
25%
Signal Score
25 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
4 reports25% confidence
4
Source reports
25%
Confidence score
Category tags
abuseabuse reportbotnetbrand abusebrand impersonationcommand and controlcredential harvestingcredential theftdata exfiltrationdeceptive marketingdistributed attacksfraudulent websiteindicatorinfrastructure acquisitionreconnaissanceingress tool transfermalicious downloadmalicious linkmalicious linksmalicious softwaremalwaremalware deliverymalware distributionmalware hostingnetworkphishingphishing attackphishing campaignphishing domain detectionphishing kitprocess injectionresearchedrogue domainsocial engineeringsocial engineering attackspam campaignt1055t1071t1071.001t1105t1189t1192t1204t1204.001t1486t1496t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1566.004t1583t1583.001t1587.001t1588t1588.002t1590.001t1598t1598.003typosquattingweb security
Activity Timeline
May 12May 12
Threat Activity Heatmap
LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreLow Risk
25
SIGNAL
Signal Score
25%
Confidence
4
Reports
First seenMar 4, 2025
Last seenMay 12, 2025
VirusTotal
Not checked
WHOIS
- registrar
- Go Daddy, LLC
- description
- Phishing, scams, all junk goes here.
- domain rank
- -1
- raw
- Creation Date: 2022-01-10T14:09:14.0Z DNSSEC: unsigned Domain Name: SUPPORT-ROYALMAIL.XYZ Domain Status: inactive https://icann.org/epp#inactive Domain Status: pendingDelete https://icann.org/epp#pendingDelete Domain Status: serverHold https://icann.org/epp#serverHold Domain Status: serverTransferProhibited https://icann.org/epp#serverTransferProhibited Registrant Country: US Registrant Email: f651612a2f356ad3s@ Registrant Organization: b46a98a26fe2fd9f Registrant State/Province: 30bdd2917a604c83 Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: +1.4805058800 Registrar IANA ID: 146 Registrar URL: https://www.godaddy.com/ Registrar WHOIS Server: whois.godaddy.com Registrar: Go Daddy, LLC Registry Domain ID: D268980317-CNIC Registry Expiry Date: 2023-01-10T23:59:59.0Z Updated Date: 2023-03-23T11:13:33.0Z
- subdomains count
- 0
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 1 year ago
Appeared in 4 threat reports