team-invite.office-teams.net
“Phishing Simulation Notice”
team-invite.office-teams.net — No verificado. Resumen de las pruebas: VirusTotal 9/89 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Fortinet); URLQuery 2 det.; URLScan capture; Google Safe Browsing flagged; 1 external blocklist match (OpenPhish); PhishDestroy score 100/100. Registrador: Dynadot.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Resumen de las pruebas
team-invite.office-teams.net is a subdomain of office-teams.net. PhishDestroy first observed the hostname on Sep 23, 2026. The captured page title is “Phishing Simulation Notice”. Current evidence score: 100/100 (critical).
Positive findings are stored from 4 sources: VirusTotal, OpenPhish, Google Safe Browsing, and URLQuery. On Sep 23, 2026 at 17:47 UTC, VirusTotal recorded 9 detections among 89 engines: alphaMountain.ai, BitDefender, CRDF, CyRadar, Fortinet, G-Data, Kaspersky, SOCRadar, Sophos; Google Safe Browsing flagged the domain: Social Engineering. OpenPhish listed the hostname in the separate external-blocklist snapshot on Sep 23, 2026 at 14:20 UTC. URLQuery recorded 2 detections; no observation timestamp was retained. Non-positive and contextual checks: URLScan captured the page on Sep 23, 2026 at 15:46 UTC.
The collector marked the hostname reachable on Sep 23, 2026 at 15:46 UTC, but did not retain the HTTP response code. Registration records for the registrable domain office-teams.net list Dynadot Inc as the registrar and Aug 24, 2022 as the creation date. At collection time, the hostname resolved to 20.50.64.14. The evidence archive retains 3 visual captures from PhishDestroy and URLScan. TLS metadata lists Let's Encrypt / YR1 as the certificate issuer with validity through Dec 10, 2026; checked Sep 23, 2026 at 16:02 UTC.
The content indicators and 4 positive source findings support the current phishing classification. The stored fields do not identify an impersonated brand or victim interaction.
Forensic History & Detection Timeline
-
VirusTotal Detections Update Sep 23, 2026 · 19:47 UTCVirusTotal scanner detections updated from 8 to 9. Added scanner alerts: SOCRadar.
-
Status Check Sep 23, 2026 · 17:44 UTCTelemetry event observed.
-
Threat First Observed Sep 23, 2026 · 17:43 UTCDomain ingestion complete. Initial state is marked as alive pointing to IP
20.50.64.14.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Análisis de detección y evasión
Comprobación del enmascaramiento y la distribución del tráfico
Aún no se ha escaneado
Aún no se ha registrado ninguna diferencia entre los rastreadores y los navegadores
Observaciones almacenadas de rastreadores frente a navegadores para este servidor, además de una comprobación en tiempo real de la huella digital para sistemas de distribución de tráfico al estilo Keitaro.
- Indicador de camuflaje almacenado
- Aún no se ha escaneado
Tecnologías · 2 identified
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of team-invite.office-teams.net · checked Sep 23, 2026
Datos y informes externos
PD-20260923-548A15 Recipient: abuse@dynadot.com Abuse notice text as sent to the provider
Registrar: Dynadot LLC / Dynadot Inc (United States) Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.