IOC Radar
DomainMediumSignal 14/100

watch32.com

Location
FranceFrance
First Seen
Jul 9, 2025
Last Seen
Sep 7, 2025
Jul 9
First Seen
338d ago
Sep 7
Last Seen
278d ago
3
Reports
source reports
14%
Confidence
medium
1/91
VirusTotal
detections
Found in 3 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
14%
Signal Score
14 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

19 techniques

Feed Intelligence Summary

3 reports14% confidence
3
Source reports
14%
Confidence score
Category tags
aaaaaccept encodingaccount securityactive relatedad tevdagapi keyappleascii textbodycanada unknowncenterschi2chromecil executablecolocation datacommand and controlcommunication protocolcookiecreation datecyber threatsdata accessdata copyingdata exfiltrationdata misusedata transferdata uploaddetails linksdonedraiedynamicloaderencryptenter soudcetdientriesentropyeuropeeurope/asiaexcludeexclude suggesexpiration dateextr dataextraction dataextri dataextri includefailedfalse informationfilesfiles domainfiles relatedfinancefinancial servicesfind sfoundryfrancefunctionalitygermanygoogle safeguardhostname addhostname enumerationhtmlhttp attackhttp scannerimphashinclude reviewindicatorinformation gatheringingress tool transferinteljoinlinkmagic pe32malicious linksmalicious softwaremalwaremaxage0media centermonomovedmsiename serversnetherlandsnetworknetwork scanningneutralnextnext associatednorth americaoperating system securitypassive dnspersonal datapowered shellspresent augpresent junpresent sepprocess injectionpulse pulsespulse submitpulsespulses otxransomraw sizereconnaissancerecord valueredacted forrelated tagsreputation damageresearchedreviewrticonrtmanifestrussiasabeyscript domainsscript urlssearchsecure serverserver responseserversserviceshowingslcc2smear campaignsocial media abusespainssdeepstatusstop xsuggest1005t1030t1055t1071.001t1078t1105t1190t1204.001t1486t1499.001t1499.002t1534t1565t1566t1566.001t1589t1589.001t1592t1598titletitle addedtrid generictrojan malwaretwittertypetype rticonunitedunited statesunknown nsuny inuuueurlsurls showus entropyvhashvirtoolvirtual sizevt communityweb securityweb trafficwin32 exewindows ntwritewrite cxport

Activity Timeline

1 total obs
Sep 7Sep 7

Threat Activity Heatmap

· Peak: 2025-09-07
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreLow Risk
14
SIGNAL
Signal Score
14%
Confidence
3
Reports
First seenJul 9, 2025
Last seenSep 7, 2025

VirusTotal

1/ 91vendors flagged
1% detection rateJun 6, 2026

WHOIS

registrar
GoDaddy.com, LLC
domain rank
-1
raw
Creation Date: 2011-04-26T03:19:45Z DNSSEC: unsigned Domain Name: WATCH32.COM Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited Domain Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited Name Server: NS1.PARKLOGIC.COM Name Server: NS2.PARKLOGIC.COM Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: 480-624-2505 Registrar IANA ID: 146 Registrar URL: http://www.godaddy.com Registrar WHOIS Server: whois.godaddy.com Registrar: GoDaddy.com, LLC Registry Domain ID: 1652867534_DOMAIN_COM-VRSN Registry Expiry Date: 2026-04-26T03:19:45Z Updated Date: 2025-04-22T00:34:40Z
subdomains count
40

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 11 months ago · Last seen 9 months ago
Appeared in 3 threat reports