Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
s-msft.com
Domain ⚠ 29 PULSE HITS
↓ CSV ↓ JSON
30
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 30/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
30/30
29 pulses
VIRUSTOTAL
/35
N/A
ABUSEIPDB
/25
IPv4 only
URLHAUS
0/10
NOT LISTED
General Information
Indicators-msft.com
Whois Domainhttp://whois.domaintools.com/s-msft.com
Typedomain
AlienVault OTX Analysis ↗ View on OTX
29
PULSE HITS
Pulse Hits 29
Indicator Type Domain
Threat Level
Validation whitelist
ASSOCIATED PULSES
PULSE NAMEDATE
“Broken Seal” DocuSign-themed Delivery with Fileless Process Hollowing (Zeppelin/Bloat-A) 2026-02-13
order clone by aclause21 Public 2026-04-17
order clone by aclause21 Public 2026-04-17
Outlook 2026-03-04
Spam “Broken Seal” DocuSign-themed Delivery w/Fileless Process Hollowing (Zeppelin/Bloat-A) by msudosos 2026-03-22
VirusTotal Analysis ↗ View on VirusTotal
⚠ VirusTotal rate limit reached. Try again shortly.
URLhaus (abuse.ch) ↗ View on URLhaus
✓ NOT LISTED No malicious activity found in URLhaus database.