DomainMediumSignal 34/100
win-tickets.org
First Seen
Jun 17, 2026
Last Seen
Jun 17, 2026
Found in 1 report. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
45%
Signal Score
34 / 100
IDS Rule
No
Threat Context
Tags
Feed Intelligence Summary
1 report45% confidence
1
Source reports
45%
Confidence score
Category tags
indicatornetworkresearched
Activity Timeline
Jun 17Jun 17
Threat Activity Heatmap
LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
1
Minimal
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated
The domain **win-tickets.org** has emerged as a significant indicator of compromise (IOC) in recent threat intelligence reports, first observed on June
Threat ScoreLow Risk
34
SIGNAL
Signal Score
45%
Confidence
1
Reports
First seenJun 17, 2026
Last seenJun 17, 2026
VirusTotal
Not checked
WHOIS
- registrar
- Amazon Registrar, Inc.
- creation date
- 2020-12-07T19:49:29
- expiration date
- 2026-12-07T19:49:29
- updated date
- 2025-11-07T19:51:12
- name servers
- ns-1123.awsdns-12.org, ns-139.awsdns-17.com, ns-1918.awsdns-47.co.uk, ns-701.awsdns-23.net
- country
- US
- emails
- db79b77db80d031f0e7e10d110f50b6d107b6071bb020a4ca5950da340a28226@win-tickets.org.whoisproxy.org, db79b77db80d031f0e7e10d110f50b6d373d88881888443825fa8a3a117f3e98@win-tickets.org.whoisproxy.org, db79b77db80d031f0e7e10d110f50b6d8b9292dbca7495d092bbaf2c6c1d860d@win-tickets.org.whoisproxy.org, db79b77db80d031f0e7e10d110f50b6da2ad7344ba6b9dcd548ac07c7ccca914@win-tickets.org.whoisproxy.org, [email protected]
- org
- c/o whoisproxy.com
- status
- ok https://icann.org/epp#ok
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 3 days ago · Last seen 3 days ago
Appeared in 1 threat report