DomainMediumSignal 90/100
synacorzimbra.nl
Location
First Seen
Mar 21, 2026
Last Seen
May 22, 2026
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
90%
Signal Score
90 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
7 reports90% confidence
7
Source reports
90%
Confidence score
Category tags
active scanactive scanningbrute forcebrute force attackcredential accesscredential stuffingdata exfiltrationdata store exposureeuropeexploitation activityexternal threat activityftp brute forceidentity & access exploitationindicatorinjection activitymalicious softwaremalwaremanual-collectionmedium-risknetherlandsnetworknetwork reconnaissancenetwork scanningpassword attacksprocess injectionreconnaissanceremote accessremote servicesresearchedssh attackt1021.001t1046t1055t1071.001t1076t1110t1110.001t1110.002t1110.003t1110.004t1486t1563t1565t1595t1595.001t1595.002t1595.003type osintunauthorized access attempt
Activity Timeline
May 22May 22
Threat Activity Heatmap
· Peak: 2026-05-22LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated
The domain **synacorzimbra.nl**, originating from the Netherlands, has been identified as an active indicator of compromise (IOC) associated with malware activities. First observed on March
Threat ScoreHigh Risk
90
SIGNAL
Signal Score
90%
Confidence
7
Reports
First seenMar 21, 2026
Last seenMay 22, 2026
VirusTotal
Not checked
WHOIS
- domain rank
- -1
- raw
- Administrative email: [email protected] Create date: 2026-02-03 00:00:00 Domain name: synacorzimbra.nl Domain registrar id: 303.0 Domain registrar url: https://publicdomainregistry.com Name server 1: boyd.ns.cloudflare.com Name server 2: sara.ns.cloudflare.com Query time: 2026-02-05 15:13:01 Technical email: [email protected]
- subdomains count
- 0
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 months ago · Last seen 24 days ago
Appeared in 7 threat reports