🌐 artidomain.com
DOMAIN
· host
artidomain.com
· threat 0.50 (HIGH)
· Malware Attribution · Bangning Digital Technology Co.,Ltd First seen 2026-08-06 13:07:44 · last seen 2026-08-12 00:08:24
🔄 Pivot:📁 Malware Attribution
Threat score
0.50
MEDIUM
Sightings
7
4 sources
Subdomains (local)
0
from indicators
Related IPs
10
A/AAAA records
DNS records (local)
14
5 types
Reporting sources
4
1 enrichments
📡 Reporting-source breakdown
2
1
1
4 total source links on this indicator.
🏷 Tag breakdown (domain family)
1
1
📈 DNS record-type counts
5
5
2
1
1
📅 First-seen timeline (family)
1
🏷 WHOIS / Registration (local cache)
| Registrar | Bangning Digital Technology Co.,Ltd |
| Abuse Email | abuse@com.top |
📡 DNS Records
Stored (local dns_records) — 14
| Type | Value | TTL | Checked |
|---|---|---|---|
| A | 104.16.250.22 |
1 | 2026-09-07 |
| A | 104.21.224.5 |
1 | 2026-09-07 |
| A | 104.18.185.26 |
1 | 2026-09-07 |
| A | 104.21.227.134 |
1 | 2026-09-07 |
| A | 104.17.25.173 |
1 | 2026-09-07 |
| AAAA | 2606:4700:8ca0::3dc4:21a2 |
1 | 2026-09-07 |
| AAAA | 2a06:98c1:3120::5692:61a4 |
1 | 2026-09-07 |
| AAAA | 2606:4700:3032::818:669e |
1 | 2026-09-07 |
| AAAA | 2606:4700:e7::3151:47a9 |
1 | 2026-09-07 |
| AAAA | 2606:4700:3035::1a4f:5642 |
1 | 2026-09-07 |
| CNAME | vip.leledns.com |
1 | 2026-09-07 |
| NS | ns1.julydns.com |
21598 | 2026-09-07 |
| NS | ns2.julydns.com |
21598 | 2026-09-07 |
| SOA | ns1.julydns.com |
600 | 2026-09-07 |
Live (DNS-over-HTTPS · optional augmentation)
| Type | Value | TTL |
|---|---|---|
| A | vip.leledns.com. |
1 |
| A | a.dnsapi12.com. |
10 |
| A | baidu.cloudflare.182682.xyz. |
10 |
| A | 104.17.25.173 |
1 |
| A | 104.21.227.134 |
1 |
| A | 104.21.224.5 |
1 |
| A | 104.18.185.26 |
1 |
| A | 104.16.250.22 |
1 |
| AAAA | vip.leledns.com. |
1 |
| AAAA | a.dnsapi12.com. |
10 |
| AAAA | baidu.cloudflare.182682.xyz. |
10 |
| AAAA | 2606:4700:8ca0::3dc4:21a2 |
1 |
| AAAA | 2606:4700:e7::3151:47a9 |
1 |
| AAAA | 2606:4700:3035::1a4f:5642 |
1 |
| AAAA | 2606:4700:3032::818:669e |
1 |
| AAAA | 2a06:98c1:3120::5692:61a4 |
1 |
| MX | vip.leledns.com. |
1 |
| MX | a.dnsapi12.com. |
10 |
| MX | baidu.cloudflare.182682.xyz. |
10 |
| NS | ns1.julydns.com. |
21600 |
| NS | ns2.julydns.com. |
21600 |
| TXT | vip.leledns.com. |
1 |
| TXT | a.dnsapi12.com. |
10 |
| TXT | baidu.cloudflare.182682.xyz. |
10 |
| CNAME | vip.leledns.com. |
1 |
🖥 Related IPs (10)
Resolved from local A/AAAA records (augmented with live DoH when reachable). Each pivots to its IP dossier.
🌐 Subdomains — local intel (0)
No subdomains of artidomain.com in local intel. Check crt.sh ↗
📡 Reporting Sources (4)
ThreatFox Recent | Malware Attribution |
ThreatView C2 Hunting | C2 Attribution |
ThreatView C2 Cobalt Strike | C2 Attribution |
abuse.ch ThreatFox (CSV) | Malware |
🌐 Same-ASN domains (0)
No ASN linkage in local intel.
🧩 Enrichment Data (1 records)
🔍 OSINT pivots — external lookups
🔗 Internal pivots & actions
📁 Case Management
Every panel resolves local-first: threat, category, first-seen & sightings from
indicators; DNS from dns_records; WHOIS from whois_cache; subdomains via bounded suffix match on indicators; related IPs from A/AAAA records; tags, reporting sources and the link graph from the local relations. Live OTX pulses and DNS-over-HTTPS are optional augmentation and their absence never blanks the dossier.
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports
🤖 AI Copilot
⚡ AI Skills
🔍 Lookup & Enrich
📚 Docs & Reports
💡 Recommendations
- Audit DNS to build passive history
- Pivot resolved IPs to their dossiers
- Report phishing to registrar/host