meetasmjklogin[.]webflow[.]io
“meetasmjklogin”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
The domain meetasmjklogin.webflow.io is identified as a credential phishing infrastructure specifically designed to harvest Microsoft account credentials. Analysis indicates this subdomain impersonates legitimate Microsoft login portals, presenting users with fraudulent authentication interfaces to capture usernames, passwords, and potentially multi-factor authentication codes. As of the latest verification, the domain has been taken offline, though residual risk may persist through cached pages or secondary distribution channels. Infrastructure analysis reveals the domain was hosted on IP address 172.64.151.8 and registered through MarkMonitor, Inc., a registrar commonly associated with enterprise domains. The domain creation date of May 08, 2013, suggests potential misuse of an older, previously legitimate subdomain rather than a newly registered malicious asset. Security telemetry indicates the domain was flagged by 18 of 95 vendors on VirusTotal, with detections spanning phishing, fraud, and malicious URL categories. Additionally, the domain appears on three distinct security blocklists, reinforcing its classification as high-risk infrastructure. The SSL certificate issued by Google Trust Services (WE1) provided a veneer of legitimacy, though certificate authority alone does not validate domain authenticity. Current status confirms the domain is offline, reducing immediate exposure risk. However, organizations and individuals are advised to implement the following mitigations: block the domain and associated IP (172.64.151.8) at network perimeter controls; monitor for credential reuse attempts targeting Microsoft accounts; and educate users on identifying phishing indicators such as mismatched URLs, unexpected login prompts, and domain spoofing techniques. Security teams should review logs for prior connections to meetasmjklogin.webflow.io and assess potential credential exposure. Given the domain's prior activity, vigilance is warranted for similar subdomain-based phishing campaigns leveraging cloud hosting platforms.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
التقنيات
حُدّدَت تقنيتان عاليتا الثقة
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب