URL / Domain Profile

🌐 https://flare.io/learn/resources/blog/teampcp-cloud-native-ransomware

URL · host flare.io · threat 0.50 (HIGH) · Threat Actors
First seen 2026-08-06 13:13:00 · last seen 2026-08-06 14:45:34

Threat score

0.50
MEDIUM

Sightings

2
1 sources

Subdomains (local)

0
from indicators

Related IPs

4
A/AAAA records

DNS records (local)

0
0 types

Reporting sources

1
0 enrichments

📡 Reporting-source breakdown

Threat Actors
1
1 total source links on this indicator.

🏷 Tag breakdown (domain family)

medium-severity
1
url
1
auto-tagged
1

📈 DNS record-type counts

No data.

📅 First-seen timeline (family)

2026-08
1

🏷 WHOIS / Registration (local cache)

No cached WHOIS for flare.io. Resolve & cache.

🏷 Tags

url medium-severity auto-tagged
CategoryThreat Actors
SeverityMEDIUM

📡 DNS Records

Live (DNS-over-HTTPS · optional augmentation)

TypeValueTTL
A 104.21.34.146 300
A 172.67.161.222 300
AAAA 2606:4700:3035::6815:2292 300
AAAA 2606:4700:3037::ac43:a1de 300
MX 5 alt1.aspmx.l.google.com. 3600
MX 5 alt2.aspmx.l.google.com. 3600
MX 1 aspmx.l.google.com. 3600
MX 10 alt3.aspmx.l.google.com. 3600
MX 10 alt4.aspmx.l.google.com. 3600
NS paul.ns.cloudflare.com. 21600
NS marjory.ns.cloudflare.com. 21600
TXT google-site-verification=JcLO98Yp36nTE3v4fJQD5D-h3BQGBpT8haiXdyvLBAU 60
TXT bcn=45B5EC9E-7285-11EE-8A62-938D0E3C8740 60
TXT figma-domain-verification=3dc36d811a0ef75874c864c12826cbbfbd01544f17423904d3ee2d4b55b6c78f-1736814378 60
TXT float-verification-code-719c3d38-509f-4c7a-a29c-7020b4633dc0 60
TXT notion-domain-verification=LSdf5LB9tcsKpW61RVPo45n749UOVqYNy1h6ShQ17hx 60
TXT google-site-verification=gxSMYztgPASPvNG7htDr8sl0K9WvoQBRLr236au8PsM 60
TXT apple-domain-verification=8N8r0TlRuKr8WuMF 60
TXT slack-domain-verification=uwBatsMV2EFIETHrpMXa66i0TLVa72gH8bvOu5yi 60
TXT anthropic-domain-verification-jby2sp=oNBg9haJwlFvuS9cxmKDotMyx 60
TXT amazon-business-verification=0ec5940a5f7c51407791a1c1477a7ed7ad2f837597b1837fb0336cc73e5539f8 60
TXT atlassian-domain-verification=Ul927muyDNKQqn62DG1b2xesJBfp5LLzEvt//7FNhgddb2F9RI6ACJlmbjfjJ/ZE 60
TXT miro-verification=e252be01a54bd191d2a159b4e9d86e5e6cbac783 60
TXT canva-site-verification=JKNq5-kxas11mO3OnfVhtg 60
TXT hubspot-domain-verification=ZDliYjIzYzEtMTIxNi00ODFkLWEwY2UtMDNiOWM0MTIxZmRk 60
TXT TAILSCALE-JHfMZqPFURxb04USfd4c 60
TXT 8351FF6F1A 60
TXT openai-domain-verification=dv-quMRdNd7aeV3tO9Jz0DvmVMS 60
TXT monday-com-verification=N9gnrV0auaNQGSAWQpB6OZK4FMnBo7klMKLWuc5Yo7w 60
TXT cursor-domain-verification-w2am81=VM6nuHfoTqedmi8IEQVSwoo8L 60
TXT MS=ms96748024 60
TXT linear-domain-verification=qpxsy8dunu2y 60
TXT v=spf1 include:_spf.google.com include:sendgrid.net include:servers.mcsv.net include:5092267.spf03.hubspotemail.net include:mail.zendesk.com -all 60

🖥 Related IPs (4)

Resolved from local A/AAAA records (augmented with live DoH when reachable). Each pivots to its IP dossier.

104.21.34.146 172.67.161.222 2606:4700:3035::6815:2292 2606:4700:3037::ac43:a1de

🌐 Subdomains — local intel (0)

No subdomains of flare.io in local intel. Check crt.sh ↗

📡 Reporting Sources (1)

MISP Galaxy Threat ActorsThreat Actors

🌐 Same-ASN domains (0)

No ASN linkage in local intel.

Every panel resolves local-first: threat, category, first-seen & sightings from indicators; DNS from dns_records; WHOIS from whois_cache; subdomains via bounded suffix match on indicators; related IPs from A/AAAA records; tags, reporting sources and the link graph from the local relations. Live OTX pulses and DNS-over-HTTPS are optional augmentation and their absence never blanks the dossier.
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php

🔗 Related Tools