MALICIOUS — CRITICAL
dus01b[.]top
The domain dus01b.top is assessed as high risk due to its involvement in credential theft activities.
- VirusTotal
- 11/91
- Blocklists
- 2 · MetaMask, SEAL
- التوفر
- آخر نشاط معروف · HTTP 301
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is complaint@gname.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
dus01b.top — آخر نشاط معروف (HTTP 301). نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 11/91 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 93/100. مسجّل النطاق: Gname.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
The domain dus01b.top is assessed as high risk due to its involvement in credential theft activities. The threat is characterized by its use of deceptive techniques to acquire sensitive information from users. The domain remains active, posing a significant threat to unsuspecting individuals who may be targeted through phishing tactics designed to steal login credentials and other personal data.
This domain resolves to the IP address 188.114.97.3 and is hosted in the United States, specifically under the infrastructure of Cloudflare, Inc. (AS13335). It was registered through Gname.com Pte. Ltd. and created on April 13, 2026. Notably, the domain appears on three security blocklists managed by PhishDestroy, MetaMask, and SEAL. VirusTotal reports that 2 out of 95 security vendors have flagged this domain, indicating a moderate level of detection but still a concerning presence. The SSL certificate is issued by Let's Encrypt, which is a commonly used certificate authority for legitimate and illegitimate websites alike.
To mitigate the risks associated with dus01b.top, users and organizations should implement comprehensive security measures. These include using advanced email filtering solutions to detect and block phishing attempts, educating users on recognizing suspicious domains and email content, and ensuring that two-factor authentication is enabled on all sensitive accounts to provide an additional layer of security. Continuous monitoring of network traffic for anomalous activity linked to this domain is also recommended. Immediate action should be taken to update security protocols to defend against potential credential theft attempts originating from this domain.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | web.dus01b.top |
malicious | Sinkholed |
| Hagezi Threat Feed | dus01b.top |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260617-EF59A7 Recipient: complaint@gname.com Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.