IOC Radar
DomainHighVerifiedSignal 25/100

ww1.bankcomat.online

First Seen
Mar 4, 2025
Last Seen
Dec 7, 2025
Mar 4
First Seen
475d ago
Dec 7
Last Seen
197d ago
4
Reports
source reports
25%
Confidence
high
Found in 4 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
25%
Signal Score
25 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

26 techniques

Feed Intelligence Summary

4 reports25% confidence
4
Source reports
25%
Confidence score
Category tags
abuseabuse reportbotnetbrand abusebrand impersonationcommand and controlcredential harvestingcredential theftdata exfiltrationdeceptive marketingdistributed attacksfraudulent websiteindicatorinfrastructure acquisitionreconnaissanceingress tool transfermalicious downloadmalicious linkmalicious linksmalicious softwaremalwaremalware deliverymalware distributionmalware hostingnetworkphishingphishing attackphishing campaignphishing domain detectionphishing kitprocess injectionresearchedrogue domainsocial engineeringsocial engineering attackspam campaignt1055t1071t1071.001t1105t1189t1192t1204t1204.001t1486t1496t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1566.004t1583t1583.001t1587.001t1588t1588.002t1590.001t1598t1598.003typosquattingweb security

Activity Timeline

1 total obs
Dec 7Dec 7

Threat Activity Heatmap

· Peak: 2025-12-07
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreLow Risk
25
SIGNAL
Signal Score
25%
Confidence
4
Reports
First seenMar 4, 2025
Last seenDec 7, 2025
Verified IOC

VirusTotal

Not checked

WHOIS

registrar
Sav.com, LLC
description
Phishing, scams, all junk goes here.
raw
Creation Date: 2023-04-03T08:14:57.0Z DNSSEC: unsigned Domain Name: BANKCOMAT.ONLINE Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: pendingDelete https://icann.org/epp#pendingDelete Domain Status: serverHold https://icann.org/epp#serverHold Domain Status: serverTransferProhibited https://icann.org/epp#serverTransferProhibited Name Server: NS1-EXPIRED.SAV.COM Name Server: NS2-EXPIRED.SAV.COM Registrant Country: US Registrant Email: f651612a2f356ad3s@ Registrant Organization: caffdf4bc1326d1b Registrant State/Province: 9ec338f97a19bef0 Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: +1.8885808790 Registrar IANA ID: 609 Registrar URL: https://www.sav.com/ Registrar WHOIS Server: whois-service.virtualcloud.co Registrar: Sav.com, LLC Registry Domain ID: D357965784-CNIC Registry Expiry Date: 2024-04-03T23:59:59.0Z Updated Date: 2024-06-17T00:04:03.0Z

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 1 year ago · Last seen 6 months ago
Appeared in 4 threat reports