IOC Radar
DomainHighVerifiedSignal 67/100

yashmak.cn

First Seen
Feb 22, 2025
Last Seen
Apr 7, 2026
Feb 22
First Seen
486d ago
Apr 7
Last Seen
77d ago
6
Reports
source reports
67%
Confidence
high
Found in 6 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
67%
Signal Score
67 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

35 techniques

Feed Intelligence Summary

6 reports67% confidence
6
Source reports
67%
Confidence score
Category tags
account enumerationactive scanactive scanningbotnetbotnet activitybrute forcecommand and controlcommunity managementcontent sharingcredential accesscredential harvestingcredential stuffingdata exfiltrationdata store exposuredata theftdigital platformsdistributed attacksexploitation activityftp brute forceidentity & access exploitationindicatorinjection activityiot securitymalicious softwaremalicious urlsmalwarenetworknetwork probingnetwork scanningphishingphishing attackprocess injectionreconnaissanceremote accessremote servicesresearchedresource enumerationsocial analyticssocial engineeringsocial mediasocial media marketingsocial media securitysocial networkingspamssh attackt1016t1021.001t1040t1055t1056t1056.001t1059t1059.004t1071.001t1076t1087t1087.001t1087.002t1087.003t1110t1110.001t1110.002t1133t1187t1190t1486t1496t1499.002t1499.003t1563t1565t1566.001t1566.002t1566.003t1583t1583.006t1595t1595.001t1595.002t1595.003twitteruser engagement

Activity Timeline

1 total obs
Apr 7Apr 7

Threat Activity Heatmap

· Peak: 2026-04-07
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated

The domain **yashmak.cn** has been identified as a significant indicator of compromise (IOC) associated with multiple malicious activities, including botnet operations, malware distribution, phishing campaigns, and spam. First observed on February

Threat ScoreMedium Risk
67
SIGNAL
Signal Score
67%
Confidence
6
Reports
First seenFeb 22, 2025
Last seenApr 7, 2026
Verified IOC

VirusTotal

Not checked

WHOIS

domain rank
-1
raw
DNSSEC: unsigned Domain Name: yashmak.cn Domain Status: ok Expiration Time: 2025-04-02 16:45:14 Name Server: dns27.hichina.com Name Server: dns28.hichina.com Registrant Contact Email: [email protected] Registrant: 781c17a6f14b2204 Registration Time: 2024-04-02 16:45:14 Sponsoring Registrar: 阿里云计算有限公司(万网)
references
https://x.com/harugasumi/status/1890947197937537425, https://x.com/harugasumi/status/1890947376728187014, https://x.com/harugasumi/status/1890959539123691643, https://x.com/harugasumi/status/1890963029535207443, https://x.com/harugasumi/status/1890964209669718224, https://x.com/harugasumi/status/1891000348841566260, https://x.com/harugasumi/status/1891001556863943167, https://x.com/harugasumi/status/1891003942424752290, https://x.com/harugasumi/status/1891016813560860812, https://x.com/harugasumi/status/1891021249209339981, https://x.com/harugasumi/status/1891024866909831504, https://x.com/harugasumi/status/1891027392535154832, https://x.com/harugasumi/status/1891031174388015206, https://x.com/harugasumi/status/1891033408270209241, https://x.com/harugasumi/status/1891035208100544853, https://x.com/harugasumi/status/1891037016718012692, https://x.com/harugasumi/status/1891039180911751564, https://x.com/harugasumi/status/1891043311038697506, https://x.com/harugasumi/status/1891045021752742231, https://x.com/harugasumi/status/1891045887599628741, https://x.com/harugasumi/status/1891106538560831816, https://x.com/harugasumi/status/1891108107935203722
subdomains count
0

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 1 year ago · Last seen 2 months ago
Appeared in 6 threat reports