Aller au rapport de sécurité
Checked 09/08/2026 Ref C15633D7

MALICIOUS — HIGH

Analyse phishing et sécurité de common-att-dev.cloud.synchronoss.net

common-att-dev[.]cloud[.]synchronoss[.]net

Analysis of common-att-dev.cloud.synchronoss.net indicates that the domain poses an elevated risk of phishing.

65/100 evidence score · High
VirusTotal
3/94
Blocklists
No stored match
Disponibilité
Non vérifié
Report / Add Evidence Appeal this listing
2026-03-19 02:20 UTCNon vérifié

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Ce domaine a été signalé comme malveillant
Moteurs de sécurité signalant une détection : 3. Faites preuve d’une extrême prudence – ne saisissez pas d’informations d’identification ou d’informations personnelles.
Jump to section
Résumé du rapport

common-att-dev.cloud.synchronoss.net — Non vérifié. Type d'arnaque : Credential Phishing. Résumé des preuves: VirusTotal 3/94 (Cluster25, CRDF, Gridinsoft); PhishDestroy score 65/100. Bureau d’enregistrement: Network Solutions.

L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.

Evidence Analysis

Ref C15633D7

Analysis of common-att-dev.cloud.synchronoss.net indicates that the domain poses an elevated risk of phishing. The domain, which was created on September 14, 2000, currently resolves to the IP address 18.213.59.36. It is notable that the domain has been flagged by 2 out of 95 security vendors on VirusTotal, suggesting a low but significant level of suspicion. The domain has been taken offline, which may indicate that the phishing operation has been interrupted or that the domain has been intentionally decommissioned to avoid detection and further harm. Despite the offline status, the domain's presence on two security blocklists, including PhishDestroy and BLP-Malware, underscores the necessity for continued vigilance and monitoring. Infrastructure analysis reveals the use of Contentful, Amazon Web Services, Amazon S3, and Amazon CloudFront, which are common technologies used for hosting and delivering content. The SSL certificate for the domain is provided by Amazon, adding a layer of trust that could be leveraged by attackers to bypass initial user skepticism. The domain's low trust scores on Scamadviser (11/100) and Gridinsoft (0/100) further reinforce the domain's potential involvement in malicious activities. Defenders should be aware that the domain's offline status does not necessarily mean the threat has been neutralized, as attackers can quickly reactivate or redirect domains. It is recommended to maintain network and endpoint protections, monitor for any signs of reactivation, and educate users about the risks associated with phishing attempts. Additionally, defenders should review any logs or records of past access to the domain to identify and mitigate any potential breaches or data exfiltration that may have occurred while the domain was active. Collaboration with other security teams and the sharing of threat intelligence can also help in tracking the activities of the threat actors associated with this domain.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
3 det.
DNS Security
3/14
URLScan
URLScan
ScamAdviser
Scamadviser
11/100
Certificat TLS
Amazon
Statut observé
Non vérifié
PhishDestroy
DestroyList
Répertorié
Couverture des données13 recorded checks
VirusTotal 3 / 94 URLQuery rapport stocké — verdict détaillé en attente PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture rapport stocké URLScan verdict Analyse terminée Blocs DNS 3/14 TLS valid certificate, 108d WHOIS not parsed Capture d'écran capture externe Chaîne de redirection non sondé Scamadviser 11/100
Renseignements sur la sécurité réseau
DNS Provider Blocks 3 / 14
Controld Adblock Controld Family Controld Malware

Processus de réponse aux menaces Pipeline

Découverte
Checks
Reports
Disponibilité
10/12
Menace détectée
common-att-dev.cloud.synchronoss.net détectés et mis en file d'attente en vue d'une analyse complète
19/03/2026
URLScan.io Capture
Stored URLScan report with capture artifacts
URLScan Verdict
Analyse URLScan terminée ; ce résultat de capture Web ne modifie pas le verdict de menace de page · score 0
29/07/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
3/94 recorded on VirusTotal
18/07/2026
Google Safe Browsing
12/07/2026
DNS Security Blocks
Blocked by 3 of 14 checked DNS providers: Controld adblock, Controld family, Controld malware
Forensic Evidence Collected
Stored evidence from URLScan.io, stored screenshot
Technical Analysis Recorded
Le rapport contient des résultats de technologie ou d’analyse médico-légale stockés.
09/08/2026
Complaint Draft Available
Aucune soumission n'est enregistrée. Vous pouvez créer un brouillon, le réviser et le soumettre vous-même à l'autorité compétente.
DestroyList publié
19/03/2026
Disponibilité non vérifiée
La dernière réponse est insuffisante pour classer la disponibilité actuelle.

Statut de la liste de blocage publique

Capture enregistrée

Titre de la page
ATT Personal Cloud
Certificat TLS
Valid transport encryption · Émis par Amazon · valid for 108 days

Informations sur les domaines

Domaine
URLScan Verdict Analyse terminée score 0 report ↗
Serveur / ASN AmazonS3 · AS14618 Amazon.com, Inc.
Réputation de l’IP abuse score 0/100 0 reports checked 14/07/2026
Registrar (base domain) Network Solutions
Adresse IP 18.213.59.36 US
LocalisationUS Ashburn, US
RéseauAS14618 · AWS EC2 (us-east-1)
Elapsed Since First Report 35 days
Ce que nous comptons Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Non vérifié.
Ce que contient chaque rapport Les enregistrements de rapports sortants stockés peuvent faire référence à des preuves disponibles à ce moment-là, telles que les verdicts des fournisseurs, les données d'enregistrement, les détails d'hébergement, les classifications ou les captures d'écran. Cette page ne déduit pas la charge utile exacte livrée, la réception, l'accusé de réception ou l'action d'un destinataire.
Détails techniquesDNS, SAN SSL, horodatages
Première détection19/03/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://common-att-dev.cloud.synchronoss.net/
Serveurs de nomsns6.synchronoss.com
TLS Fingerprint
TLS Observationvalid from 29/09/2025scanned 24/03/2026
TLS SAN Domainsccs.att.dev.cloud.synchronoss.net
ICANN OVERSIGHT Registration: synchronoss.net

Contexte de l’accréditation et du RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain synchronoss.net behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Rien n’est envoyé automatiquement.
Technologies · 5 identified
Contentful
Amazon Web Services
PaaS IaaS

Cloud computing platform offering compute, storage, and networking services.

HSTS
Sécurité

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

Amazon S3
Amazon CloudFront

Amazon Web Services CDN for low-latency content delivery.

Detected via Cloudflare Radar · Wappalyzer engine
Signaler ce domaine Envoyez des éléments de preuve et contribuez à protéger les autres

Analyse VirusTotal

3 / Les fournisseurs de sécurité 94 ont signalé ce domaine
View on VT
Last analyzed
Cluster25
CRDF
Gridinsoft
Analyse des performances du site

Google PageSpeed Insights — mobile performance audit of common-att-dev.cloud.synchronoss.net · checked Jul 12, 2026

49
Poor
Performance
FCP
2.22s
First Contentful Paint
LCP
9.12s
Largest Contentful Paint
CLS
0.001
Cumulative Layout Shift
TBT
720ms
Total Blocking Time
SI
6.88s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.

Europol
Trouvez le canal de signalement officiel pour votre pays de l'UE
National police directory
Méfiez-vous des escrocs qui prétendent vous aider à récupérer vos biens ! Les criminels peuvent recontacter leurs victimes tout en se faisant passer pour des enquêteurs, des avocats ou des agents de recouvrement. Ne payez pas de frais initiaux et ne partagez pas vos informations d'identification. En savoir plus sur la fraude liée aux aides à la reprise →

Signalez-le à vos autorités locales

Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.

Annuaire de 97 pays
Brouillon assisté par l'IA : les détails de l'incident sont traités par le fournisseur d'IA Examinez-le et soumettez-le vous-même
Intégrer ce rapportRead-only HTML widget
HTML · IFRAME

Intégrer ce rapport

Partagez ces informations sur les menaces sur votre site web ou votre blog

embed.html
<iframe
  src="https://phishdestroy.io/fr/embed/domain/common-att-dev.cloud.synchronoss.net"
  title="PhishDestroy threat report for common-att-dev.cloud.synchronoss.net"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Une lettre de remerciement très sincère

Générateur de brouillon satirique

Destinataire
Contexte des frais

Brouillon satirique. Les montants des frais sont des estimations ; aucune attribution exacte à ce domaine n’est affirmée.