DomainHighVerifiedSignal 86/100
select_tokio_better_1.9.zip
First Seen
Jun 22, 2026
Last Seen
Jun 28, 2026
Found in 124 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
95%
Signal Score
86 / 100
IDS Rule
Yes
Threat Context
Feed Intelligence Summary
124 reports95% confidence
Activity Timeline
Jun 28Jun 22
Threat Activity Heatmap
LessMore
Mon
Wed
Fri
24h
12
Elevated
7d
124
Critical
30d
124
Critical
3mo
124
Critical
Threat ScoreHigh Risk
86
SIGNAL
Signal Score
95%
Confidence
124
Reports
First seenJun 22, 2026
Last seenJun 28, 2026
Verified IOC
VirusTotal
Not checked
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 5 days ago · Last seen today
Appeared in 124 threat reports from 10 sources
Associated with: Sandworm, Turla, Play
Used by malware: Nmap, Mozi, Frp, XWorm, FormBook, AgentTesla, Cobalt Strike, QuasarRAT, Aurora, Mirai, Vidar, Metasploit, Fscan, META Stealer, Gh0st RAT, Play, Stealc