# mail.support-outlook.ru — MALICIOUS > Analyze mail.support-outlook.ru, a suspicious domain mimicking Microsoft Outlook support. Learn about its risk and ongoing investigation status. ## Summary PhishDestroy identifies mail.support-outlook.ru as a domain engaged in brand impersonation, specifically targeting Microsoft. Classified under brand_impersonation, the domain aims to deceive users by mimicking official Microsoft Outlook support services. Although it currently holds a risk level marked as under_investigation, the domain’s intent to mislead is clear given its naming and branding approach. Technically, mail.support-outlook.ru was registered on March 16, 2026, through the Russian registrar TIMEWEB-RU. It resolves to the IP address 87.249.38.179, which may be monitored for suspicious activity. Despite thorough scanning, VirusTotal reports zero detections across 95 security vendors, indicating it has not yet been flagged by mainstream security tools. This absence of detection, combined with the domain’s recent creation and suspicious naming, suggests it is likely in early stages of malicious use or evasion. Currently, the domain remains active and under close observation by PhishDestroy analysts. No public blacklists or automated security services have yet classified it as malicious, highlighting the importance of vigilance around newly registered domains mimicking trusted brands. PhishDestroy recommends caution and ongoing monitoring until conclusive evidence is established, as early identification can prevent potential phishing attacks leveraging Microsoft’s brand reputation. ## Threat Details - Verdict: MALICIOUS - Site status: alive (HTTP 200) - Target brand: Microsoft - Page title: Домен припаркован в Timeweb ## Domain Intelligence - Registered: 2026-03-16 07:00:38 - Registrar: TIMEWEB-RU - IP: 87.249.38.179 - Nameservers: ns1.timeweb.ru. ns2.timeweb.ru. ns3.timeweb.org. ns4.timeweb.org. ## Detection Status - VirusTotal: 18 vendors flagged Vendors: [] - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Screenshot: https://i.ibb.co/nNWLCP7c/8c42224540a9.png - Cloudflare Radar: https://radar.cloudflare.com/scan/87bf2052-d1ef-496d-a533-3ab46f638b2f - PhishDestroy: https://phishdestroy.io/domain/mail.support-outlook.ru/ - LLM endpoint: https://phishdestroy.io/domain/mail.support-outlook.ru/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/mail.support-outlook.ru/ Last updated: 2026-03-19