IOC Radar
DomainMediumSignal 42/100

zhw-oubo.com

First Seen
Apr 17, 2026
Last Seen
Apr 23, 2026
Apr 17
First Seen
65d ago
Apr 23
Last Seen
59d ago
5
Reports
source reports
42%
Confidence
medium
Found in 5 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
42%
Signal Score
42 / 100
IDS Rule
No
Threat Context
Tags

Feed Intelligence Summary

5 reports42% confidence
5
Source reports
42%
Confidence score
Category tags
dgaindicatornetworkresearched

Activity Timeline

1 total obs
Apr 23Apr 23

Threat Activity Heatmap

· Peak: 2026-04-23
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated

The domain `zhw-oubo.com` is a significant indicator of compromise, directly associated with phishing and scam activities, as evidenced by its inclusion in multiple reputable threat intelligence feeds and a notable score of 41.76. This IOC signals a credible and immediate threat to organizational security, as interactions with such domains can lead to severe consequences including credential harvesting, deployment of malicious software, data exfiltration, or financial fraud. If employees or syst…

Threat ScoreMedium Risk
42
SIGNAL
Signal Score
42%
Confidence
5
Reports
First seenApr 17, 2026
Last seenApr 23, 2026

VirusTotal

Not checked

WHOIS

description
Phishing, scams, all junk goes here.
domain rank
-1
raw
Administrative country: United States Create date: 2025-05-05 00:00:00 Domain name: zhw-oubo.com Domain registrar id: 1923.0 Domain registrar url: https://rdap.gname.com/ Expiry date: 2026-05-05 00:00:00 Name server 1: NS7.ALIDNS.COM Name server 2: NS8.ALIDNS.COM Query time: 2026-04-09 10:26:52 Registrant country: United States Registrant name: 37bfbc24cafea5d2 Technical country: United States Update date: 2026-04-08 00:00:00
subdomains count
1

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 1 month ago
Appeared in 5 threat reports