microsoft-passkey[.]com
Analyse phishing et sécurité de microsoft-passkey.com
“microsoft-passkey.com”
microsoft-passkey.com — Contenu indisponible (HTTP 502). Usurpation de l'identité de la marque : Microsoft; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 14/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 92/100. Bureau d’enregistrement: NiceNIC.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
microsoft-passkey.com is an active brand impersonation site that pretends to be a Microsoft passkey service in order to trick users into entering their credentials or passkeys. The domain specifically targets Microsoft users by using the term 'passkey,' a legitimate feature Microsoft promotes for passwordless authentication. By leveraging Microsoft’s trusted brand, attackers aim to harvest sensitive login information or passkey tokens, which could then be used to hijack accounts, access personal data, or perform further malicious actions on behalf of the victim. This operation is ongoing and represents an elevated risk to users who encounter it.
PhishDestroy identifies this domain as a confirmed phishing scam based on multiple independent security indicators. This domain was flagged by 2 out of 95 security vendors on VirusTotal, indicating limited but meaningful detection. It was created on April 27, 2026, and is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar known for hosting high volumes of low-trust domains. Additionally, the domain resolves to IP address 104.251.180.208, which is linked to suspicious hosting activity and has been blocked by SEAL and MetaMask security systems. These technical markers, combined with its deceptive branding, confirm malicious intent.
If you visited microsoft-passkey.com or entered any credentials or passkeys, immediately change your Microsoft account password and revoke any active sessions or tokens associated with the account from a known-safe device. Use Microsoft’s official account security portal to review recent sign-ins and remove unrecognized sessions. Enable multi-factor authentication (MFA) using an authenticator app or hardware key, not SMS. If you re-used the same password elsewhere, update those accounts immediately with strong, unique passwords. Scan your device with updated antivirus software to check for malware. Report the site to Microsoft via their abuse portal and warn others. Avoid visiting or clicking links from unsolicited emails, messages, or ads claiming to offer Microsoft passkeys or login portals.
Renseignements sur la sécurité réseau Registrar context
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:07:56 UTC
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif