microsoft365office[.]duckdns[.]org
“Download Microsoft Office 365 for Windows and Mac | Microsoft 365”
microsoft365office.duckdns.org — المحتوى غير متوفر. انتحال العلامة التجارية: Microsoft; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 23/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. مسجّل النطاق: DuckDNS.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, microsoft365office.duckdns.org, is flagged as a brand impersonation site targeting Microsoft. It poses a significant risk by misleading users into believing they are interacting with a legitimate Microsoft service, potentially leading to the compromise of personal or financial information.
Analysis indicates that the domain resolves to the IP address 138.226.236.115, which is located in Belize and is associated with Neon Core Network LLC. The domain was registered through DuckDNS and currently appears on one security blocklist. According to VirusTotal, 19 out of 95 security vendors have flagged this domain as malicious. The site's page title, 'Download Microsoft Office 365 for Windows and Mac | Microsoft 365,' further reinforces the deceptive nature of the domain, designed to trick users into downloading potentially harmful software or providing sensitive information.
If a user has visited this domain, it is recommended to immediately change any Microsoft account passwords and monitor account activity for any unauthorized access or transactions. Additionally, users should run a full system scan using their antivirus software to detect and remove any potential malware. Reporting the incident to the respective security teams and enabling two-factor authentication (2FA) on all critical accounts can provide an additional layer of security.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
التقنيات · 7 identified
Adobe Experience Manager (AEM) is a content management solution for building websites, mobile apps and forms.
www.adobe.com ثقة 100٪Java is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.
java.com ثقة 100٪Azure is a cloud computing service for building, testing, deploying, and managing applications and services through Microsoft-managed data centers.
azure.microsoft.com ثقة 100٪Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org ثقة 100٪jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com ثقة 100٪Azure Monitor collects monitoring telemetry from a variety of on-premises and Azure sources. Azure Monitor helps you maximise the availability and performance of your applications and services.
azure.microsoft.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب