DomainMediumSignal 0/100
tu.berlin
Location
First Seen
Sep 18, 2025
Last Seen
Jun 12, 2026
Found in 1 report. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
0%
Signal Score
0 / 100
IDS Rule
No
Threat Context
Tags
Feed Intelligence Summary
1 report0% confidence
1
Source reports
0%
Confidence score
Category tags
indicatornetworkresearched
Activity Timeline
Jun 12Jun 12
Threat Activity Heatmap
· Peak: 2026-06-12LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated
This Indicator of Compromise (IOC) pertains to the domain `tu.berlin`. Given its explicit whitelist status and a risk score of 0.0, this IOC is assessed as benign and presents a low risk to organizational security. The presence of this domain in threat intelligence feeds, such as AbuseIPDB, does not, by itself, indicate malicious activity, but rather signifies its mention within these datasets. There is no corroborating evidence suggesting hostile behavior or immediate threat associated with thi…
Threat ScoreLow Risk
0
SIGNAL
Signal Score
0%
Confidence
1
Reports
First seenSep 18, 2025
Last seenJun 12, 2026
VirusTotal
Not checked
WHOIS
- registrar
- COREhub, S.R.L.
- creation date
- 2015-03-31T12:57:49
- expiration date
- 2027-03-31T12:57:49
- updated date
- 2026-04-07T13:43:03
- name servers
- dns-2.dfn.de, dns-3.dfn.de, ns.tu-berlin.de
- country
- DE
- emails
- [email protected]
- org
- Technische Universitaet Berlin
- status
- ok https://icann.org/epp#ok
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 9 months ago · Last seen 10 days ago
Appeared in 1 threat report