win[.]zh-drivergenius[.]com
“驱动精灵官网 - 官方驱动更新软件”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
This domain, win.zh-drivergenius.com, is flagged as a phishing site impersonating legitimate driver update services. Analysis indicates the threat type is brand impersonation, likely targeting users searching for driver-related software. The domain mimics trusted names in the driver management space, though no specific drainer kit or cryptocurrency-related activity has been identified yet. The infrastructure appears designed to distribute malicious payloads or harvest credentials under the guise of software updates. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 166.75.143.10 and was registered on June 18, 2026, through NameSilo, LLC. VirusTotal detections stand at 0/95, indicating no antivirus engines have flagged the domain at the time of this report. Google Safe Browsing (GSB) status remains unconfirmed, and no blocklist entries have been recorded. The domain's creation date suggests it is relatively new, which aligns with typical phishing campaign timelines where fresh domains are deployed to evade detection. Current status remains active, with no takedown or sinkholing actions observed. The risk level is under investigation, though the lack of detections on VirusTotal does not preclude malicious intent. Response actions should include monitoring for increased detection rates, analyzing payloads if distributed, and blocking the domain at the network level. Users are advised to verify driver update sources directly through official vendor websites and avoid downloading software from untrusted domains. The domain's continued activity warrants heightened scrutiny, particularly given its association with a known registrar frequently used in phishing operations.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
Registration: zh-drivergenius.com
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain zh-drivergenius.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب