IOC Radar
DomainHighVerifiedSignal 71/100

westhillcapital.pro

Location
United StatesUnited States
First Seen
Jan 11, 2025
Last Seen
Oct 3, 2025
Jan 11
First Seen
533d ago
Oct 3
Last Seen
268d ago
5
Reports
source reports
71%
Confidence
high
Found in 5 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
71%
Signal Score
71 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

22 techniques

Feed Intelligence Summary

5 reports71% confidence
5
Source reports
71%
Confidence score
Category tags
amfbank fraudbank securitybankingbinary options fraudblacklisted entitiesblacklisted websitebotnetc2command and controlcredential harvestingcredit card servicescryptocurrency frauddata exfiltrationdistributed attackseuropefakefake companiesfake investment platformsfinancefinance and insurancefinancial fraud blacklistfinancial institutionfinancial regulatorfinancial regulator alertfinancial scamfinancial scam blacklistfinancial servicesfinancial technologyforex fraudfrancefraudfraudulent schemefraudulent websitesindicatorinvestinvestment fraudinvestment scamsmalicious softwaremalwarenetworknorth americaonline scamspayment processingphishing attackphishing campaignsponzi schemesprocess injectionrecovery scamrecovery scamsregulatory warningresearchedscamscamssocial engineeringt1055t1071t1071.001t1071.004t1078t1190t1192t1204.002t1486t1496t1499.001t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1573t1588.002t1598t1598.003unauthorized financial servicesunauthorized firmunauthorized websitesunited statesunlicensed companieswealth management

Activity Timeline

1 total obs
Oct 3Oct 3

Threat Activity Heatmap

· Peak: 2025-10-03
Less
More
Mon
Wed
Fri
Jun
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated

The domain **westhillcapital.pro** has been identified as a critical indicator of compromise (IOC) associated with sophisticated cyber threats originating from the United States. First observed on January

Threat ScoreHigh Risk
71
SIGNAL
Signal Score
71%
Confidence
5
Reports
First seenJan 11, 2025
Last seenOct 3, 2025
Verified IOC

VirusTotal

Not checked

WHOIS

description
https://www.amf-france.org/en/warnings/blacklists | https://protectepargne.amf-france.org
domain rank
-1
raw
Create date: 2025-02-24 00:00:00 Domain name: westhillcapital.pro Domain registrar id: 418 Domain registrar url: http://www.galcomm.com Expiry date: 2026-02-24 00:00:00 Name server 1: ns15.abovedomains.com Name server 2: ns16.abovedomains.com Query time: 2025-02-25 11:19:28 Update date: 2025-02-25 00:00:00
subdomains count
4

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 1 year ago · Last seen 8 months ago
Appeared in 5 threat reports