usweb[.]02room[.]us
ملخص الأدلة
This domain, usweb.02room.us, is identified as a credential harvesting phishing site designed to deceive users into submitting sensitive login credentials through fraudulent web portals. Analysis indicates the infrastructure is tailored to mimic legitimate authentication pages, likely targeting corporate, financial, or personal accounts. The domain employs social engineering tactics to exploit user trust, redirecting victims to cloned interfaces where credentials are captured in real time for unauthorized access or financial fraud. Infrastructure analysis reveals concrete indicators of malicious intent. The domain was registered on June 01, 2026, an unusually recent creation date that aligns with common phishing lifecycle patterns. It resolves to the IP address 172.86.91.195, which has been associated with prior phishing campaigns. Security vendors on VirusTotal flagged usweb.02room.us with a detection ratio of 16/95, confirming its classification as malicious by multiple threat intelligence sources. Additionally, the domain appears on one security blocklist and has since been taken offline, though residual risk remains for users who may have interacted with it before deactivation. Users who visited usweb.02room.us or entered credentials on any page hosted under this domain should take immediate corrective action. First, revoke any submitted passwords and enable multi-factor authentication on all associated accounts to prevent unauthorized access. Second, monitor linked accounts for suspicious activity, such as unrecognized logins or transactions. Third, scan local devices for malware using updated security tools, as phishing sites may deploy secondary payloads. If corporate credentials were exposed, report the incident to internal security teams to initiate containment protocols. Given the elevated risk level, affected users should assume compromise and act accordingly to mitigate potential damage.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب