MALICIOUS — CRITICAL
فحص التصيد والأمان للنطاق fusser.io
fusser[.]
The domain fusser.io has been identified as a generic phishing resource targeting users of enterprise collaboration platforms.
- VirusTotal
- 4/91
- Blocklists
- 2 · MetaMask, SEAL
- التوفر
- آخر نشاط معروف · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
fusser.io — آخر نشاط معروف (HTTP 200). ملخص الأدلة: VirusTotal 4/91 (alphaMountain.ai, CRDF, Fortinet, Gridinsoft); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. مسجّل النطاق: NiceNIC.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
The domain fusser.io has been identified as a generic phishing resource targeting users of enterprise collaboration platforms. Analysis indicates the domain was actively impersonating an AI-powered team collaboration service, though it is currently offline. The threat type is classified as credential harvesting and fraudulent software distribution, with no legitimate affiliation to any known productivity suite or cloud service provider. Infrastructure analysis reveals the domain was registered on March 06, 2026, through NiceNIC International Group Co., Limited. It resolved to the IP address 172.67.204.156 and was protected by a Cloudflare proxy, utilizing HTTP/3 and Cloudflare Browser Insights for performance monitoring. The SSL certificate was issued by Google Trust Services, a common practice among phishing operators to mimic legitimacy. Detection metrics show the domain was flagged by 5 of 95 security vendors on VirusTotal, while Gridinsoft assigned a trust score of 0 out of 100. The domain appears on three distinct security blocklists and was actively blocked by multiple threat intelligence feeds. Current status indicates the domain has been taken offline, though residual risk remains for users who may have interacted with the resource prior to its deactivation. Organizations are advised to update endpoint protection rules to include the domain and associated IP in denylists. Network administrators should review logs for connections to 172.67.204.156 between March and April 2026, particularly from systems accessing enterprise collaboration tools. Users should be educated on recognizing impersonation tactics in software-as-a-service contexts, with emphasis on verifying domain registration dates and SSL certificate authorities during authentication workflows.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات Registrar context
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
Latest Classified Outcome 2026-08-09 02:43:45 UTC
التقنيات · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of fusser.io · checked Jun 26, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.