Hunting for malicious domains with VT Intelligence
ID: 044d2562-dff3-5f1a-a67b-7f94532ce083
STIX ID: report--044d2562-dff3-5f1a-a67b-7f94532ce083
Feed Name: VirusTotal Blog
This blog post provides practical threat-hunting guidance using VirusTotal Intelligence to detect risky domains before attacks materialize. It demonstrates searches for newly created domains with self-signed certificates and multiple detections, identifies command-and-control domains updated recently with significant communicating file counts, and hunts typosquatted domains (including fuzzy matches and deep subdomain depth) to catch impersonation attempts. The focus is on proactive detection and monitoring of malicious infrastructure rather than a specific incident.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
