sapporo-chugokugo[.]club
“札幌中国語クラブ”
sapporo-chugokugo.club — Non vérifié. Usurpation de l'identité de la marque : 1and1ionos; Type d'arnaque : Impersonation. Résumé des preuves: VirusTotal 14/91 (alphaMountain.ai, Cluster25, CRDF, ESET, Forcepoint ThreatSeeker); URLScan malicious verdict; PhishDestroy score 92/100.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Analysis as of August 05, 2026 indicates that the domain sapporo-chugokugo.club is actively being used in a generic phishing campaign. The domain resolves to the IPv4 address 163.44.185.225 and is hosted on name servers uns01.lolipop.jp and uns02.lolipop.jp, both belonging to the Lolipop hosting service. VirusTotal has recorded detections from eight of ninety‑one scanned security vendors, confirming that multiple AV engines identify malicious behavior associated with the domain. Independent phishing intelligence feeds have also flagged the domain: PhishDestroy and OpenPhish list it as blocked, and it appears on two additional security blocklists.
The domain’s current status remains active, meaning it continues to resolve and respond to queries. No public information was found regarding SSL certificate details, HTTP response codes, or page title content, so the exact appearance of the landing page cannot be confirmed at this time. The lack of additional infrastructure signals such as CDN usage or anomalous ASN activity suggests a relatively simple hosting setup typical of many low‑cost phishing operations. Defenders should treat connections to 163.44.185.225 originating from internal hosts as suspicious and consider enforcing network‑level deny rules for the domain and its IP address.
Updating DNS filtering solutions to include the domain and its associated name servers will help prevent resolution. Security products that ingest blocklist feeds should be verified to contain the domain, ensuring that PhishDestroy and OpenPhish entries are applied. Continuous monitoring of outbound traffic for HTTP/S requests to the domain is recommended, and any successful login attempts or credential submissions observed should be investigated as potential compromise events.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Recoupement des renseignements sur les menaces · source references
Technologies · 4 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org Confiance à 100 %Apache is a free and open-source cross-platform web server software.
httpd.apache.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif