signets.social
“Signet — приватный мессенджер”
signets.social is an active fake private messenger phishing domain. Detected by 1/95 security engines, this high-risk site impersonates secure communication.
The detailed PhishDestroy AI analysis below remains in English to preserve the original forensic record.
Evidence Summary
This domain is flagged as a high-risk phishing threat specifically targeting users of private messenger applications. Analysis indicates the site signets.social impersonates legitimate secure communication platforms under the guise of a "private messenger," a common tactic to harvest credentials or distribute malicious payloads. Infrastructure analysis reveals multiple concerning indicators. The domain resolves to IP address 193.168.141.146 and was registered on July 05, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED. Security vendor detection is minimal but notable, with 1 out of 95 engines on VirusTotal flagging the domain. The SSL certificate is issued by Let's Encrypt, providing a false sense of security. No significant blocklist presence or low trust scores were observed, suggesting the campaign may still be in its early stages or employing evasion techniques. Mitigation against this specific threat type requires immediate action. Network administrators should block the domain signets.social and its associated IP 193.168.141.146 at the firewall or DNS level. End-users should be educated to recognize impersonation attempts, particularly those mimicking private messenger services with offers of enhanced privacy or exclusive features. Security teams should monitor for credential harvesting patterns, such as fake login pages or requests for sensitive information under the pretext of account verification. Regular audits of SSL certificates and domain registration details can help identify similar impersonation attempts early.
Network Security Intelligence Registrar context
Threat Response Pipeline
Public Blocklist Status
Stored observation
Observed title contrast
Stored Capture · 2 sources
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-09-15 02:29:17 UTC
VirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of signets.social · checked Jul 8, 2026
Stored outcome evidence
Outcome & takedown attribution
- Outcome
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive