IOC Radar
DomainMediumSignal 54/100

www.jiyu-kobo.co.jp

Location
AnguillaAnguilla
First Seen
Apr 17, 2026
Last Seen
Apr 27, 2026
Apr 17
First Seen
63d ago
Apr 27
Last Seen
52d ago
3
Reports
source reports
54%
Confidence
medium
Found in 3 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
54%
Signal Score
54 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

19 techniques

Feed Intelligence Summary

3 reports54% confidence
3
Source reports
54%
Confidence score
Category tags
acceptaccessactiveactive scanagentaigall domainall ipv4america flaganguillaas2497 internetas9714 vocusascii textaslraustraliaaustralia asnbazaarbodyc0 a0c4 d8cachechristopher ahmannck idclickcommandcommerce industrycontent typecookiecre puldatadata uploaddefense evasiondenverdenver courtsdes moinesdns attackdomaindomains topdougcodr wifidynamicloaderee fcemailsenricenterenter scerrorexclude suggesexploitation activityextraextra dataextraction datafailedff d5filefilesfiles ipfindfind sfoundrypalantirguardhackinghighhybridid logininclude reviewincluded iocsindicatorindustry commerceinjusticeiocsiot securityipv4japan asnjapan unknownjeffrey reimerlearnlegallevellocallookmalwaremediamediummitm_attacksmitre attmitre attackmsiemusicmwdbname serversname tacticsnetworknetwork infonextnorth americantgraph xeoceaniaoverview zenboxpassive dnspathpattern matchpe filepegasusphishingpoleasspornhubportpostpowershellprocesses extraprogramquasireferenrefreshregistrant namereimer gropesrelated pulsesresearchedrestartreview iocssabeysc datascript scriptsearchserviceset cookieshhhshibuyaspanspawnsssdeepstatestate coloradostringst1045t1055t1056t1057t1059t1059.001t1060t1069t1069.002t1071t1071.001t1071.004t1082t1105t1480t1553t1553.002t1560t1562telecommunicationsthreat actortitletoolstor nodetrackertrojantsara brashearstt trtulachtypetype olultradns clientunitedunited statesupatreurlsvalueverdictverifywifiwifi datawifi idwindows ntworkers compensationworld mediawritewrite cxportyara rule

Activity Timeline

1 total obs
Apr 27Apr 27

Threat Activity Heatmap

· Peak: 2026-04-27
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
54
SIGNAL
Signal Score
54%
Confidence
3
Reports
First seenApr 17, 2026
Last seenApr 27, 2026

VirusTotal

Not checked

WHOIS

raw
[Connected Date] 1999/11/29 [Last Update] 2025/12/01 01:01:46 (JST) [Registered Date] 1999/11/26 [State] Connected (2026/11/30) g. [Organization] Incorporation JIYU-KOBO l. [Organization Type] Corporation p. [Name Server] ns1.canonet.ne.jp p. [Name Server] ns2.canonet.ne.jp

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 1 month ago
Appeared in 3 threat reports