IOC Radar
DomainMediumSignal 100/100

www.smbc-ccrd.com.99677gyw2i2sj012.shop

Location
JapanJapan
First Seen
Mar 31, 2023
Last Seen
Apr 22, 2025
Mar 31
First Seen
1172d ago
Apr 22
Last Seen
419d ago
7
Reports
source reports
99%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
99%
Signal Score
100 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

18 techniques

Feed Intelligence Summary

7 reports99% confidence
7
Source reports
99%
Confidence score
Category tags
asiabotnetbrand impersonationcommand and controlcredential harvestingdata exfiltrationdgadistributed attacksfinancial institution targetingfraudindicatorjapanjapan targetingmalicious softwaremalwarenetworknola defense trackingphishing attackprocess injectionresearchedscamsmbcsmbc card impersonationsocial engineeringt1055t1071t1071.001t1078t1189t1192t1204.002t1486t1496t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1598t1598.003urls

Activity Timeline

1 total obs
Apr 22Apr 22

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
100
SIGNAL
Signal Score
99%
Confidence
7
Reports
First seenMar 31, 2023
Last seenApr 22, 2025

VirusTotal

Not checked

WHOIS

registrar
Alibaba Cloud Computing Ltd.
description
This page stores SMBC Card phishing page IOCs. Legitimate website for the brand is https://www.smbc-card.com/mem/index.jsp NOLA defense is tracking newly observed phishing websites. Follow us on twitter https://twitter.com/noladefense
raw
Creation Date: 2022-12-17T13:35:06.0Z DNSSEC: unsigned Domain Name: 99677GYW2I2SJ012.SHOP Domain Status: pendingDelete https://icann.org/epp#pendingDelete Domain Status: redemptionPeriod https://icann.org/epp#redemptionPeriod Name Server: DNS19.HICHINA.COM Name Server: DNS20.HICHINA.COM Registrant Country: CN Registrant Email: 3432650ec337c945s@ Registrant State/Province: 59ab9460d47e6336 Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: +86.95187 Registrar IANA ID: 1599 Registrar URL: https://wanwang.aliyun.com/ Registrar WHOIS Server: whois.aliyun.com Registrar: Alibaba Cloud Computing Ltd. Registry Domain ID: DO7570551-GMO Registry Expiry Date: 2023-12-17T23:59:59.0Z Updated Date: 2024-01-25T00:32:44.0Z

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 3 years ago · Last seen 1 year ago
Appeared in 7 threat reports