speal[.]net
“Log in”
Résumé des preuves
Analysis indicates that speal.net was registered on 21 February 2026 and currently resolves to the IPv4 address 49.51.191.158, which is announced by ASN 132203 and hosted within a Tencent facility in the United States. The server presents an SSL certificate identified as R12, confirming the use of TLS for encrypted transport. Automated scanning on VirusTotal recorded detections from three of ninety‑three security vendors, and Gridinsoft assigned a trust score of zero out of one hundred, reflecting a high confidence of malicious intent. The domain is listed on one public blocklist and has been added to three AlienVault OTX pulses, indicating that threat‑intel feeds have correlated the infrastructure with prior phishing campaigns.
PhishDestroy has also flagged the site, and the observed page title “Log in” aligns with the reported credential‑phishing campaign. The site is presently offline, which may be due to takedown actions or temporary suspension. Defenders should continue to block DNS resolution for speal.net and the associated IP address 49.51.191.158, enforce URL filtering, and monitor network traffic for attempts to contact the host.
Email gateways should be tuned to detect messages that reference the “Log in” title or reference the domain. Continued observation of the IP’s ASN and related Tencent hosting assets is recommended to identify any re‑use of the infrastructure for future campaigns. Indicators of compromise are limited to the domain name, IP address, SSL certificate identifier, and the associated blocklist entries.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Analyse forensique
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif