---
id: "c2-domain"
kind: "glossary-term"
title: "command and control domain"
language: "en"
category: "Security and abuse"
updated: "2026-10-04T14:01:23Z"
canonical: "https://tldlog.com/glossary/c2-domain/"
translations:
  es: "https://tldlog.com/es/glosario/dominio-comando-control/"
  de: "https://tldlog.com/de/glossar/command-and-control-domain/"
  fr: "https://tldlog.com/fr/glossaire/domaine-commande-controle/"
  it: "https://tldlog.com/it/glossario/dominio-comando-controllo/"
  pt-BR: "https://tldlog.com/pt/glossario/dominio-comando-controle/"
  ru: "https://tldlog.com/ru/glossariy/domen-upravleniya-kontrolya/"
  zh-Hans: "https://tldlog.com/zh/cihui/mingling-kongzhi-yuming/"
---

# command and control domain

A domain name that infected devices contact to get orders from the criminals running a botnet or other malware. Taking it away cuts the link between the attackers and their machines. Botnet command and control is one of the uses that ICANN contracts treat as DNS abuse.

## related terms

- [botnet](https://tldlog.com/glossary/botnet/)
- [malware](https://tldlog.com/glossary/malware/)
- [DGA](https://tldlog.com/glossary/dga/)
- [sinkhole](https://tldlog.com/glossary/sinkhole/)
- [DNS abuse](https://tldlog.com/glossary/dns-abuse/)
