सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 20। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@ifastnet.com. The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
1 month
Reports sent
1
Latest case ID
PD-20260712-8A90E7
Current status
Observed active at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

actividadinusual2026[.]fwh[.]is

“Iniciar”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
वायरस का कुल पता लगाना: 20/91 Spamhaus DBL: DBL_PHISH URLQuery threat systems: 6 alerts ब्रांड प्रतिरूपण: Microsoft
10/07/2026 Microsoft 1 Report Sent
रिपोर्ट सारांश

actividadinusual2026.fwh.is — असत्यापित. ब्रांड प्रतिरूपण: Microsoft; घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 20/91 (BitDefender, Chong Lua Dao, Cluster25, CRDF, CyRadar); URLQuery 6 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 95/100. रजिस्ट्रार: FreeWebHostingArea.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
56324EDA
स्कोर
95/100

This domain, actividadinusual2026.fwh.is, is actively engaged in credential theft operations targeting unsuspecting users. Analysis confirms the domain remains operational as of the latest verification, with no takedown or mitigation measures implemented. No specific brand impersonation has been identified, but the infrastructure is designed to harvest login credentials through deceptive landing pages and form submissions. Infrastructure analysis reveals the domain was registered on November 01, 2024, through FreeWebHostingArea, a provider frequently associated with low-cost or free hosting services. It resolves to the IP address 185.27.134.221, which has been flagged by 8 of 95 security vendors on VirusTotal for malicious activity. The SSL certificate is issued by ZeroSSL GmbH, a common provider for both legitimate and malicious domains, offering no inherent trust indicators. No additional blocklist entries or trust scores were identified beyond the VirusTotal detections, though this does not diminish the confirmed malicious intent. The domain remains active and poses a high risk to users who may encounter it through phishing emails, malicious advertisements, or compromised redirects. Organizations are advised to block both the domain and its resolving IP at the network perimeter. Endpoint protection systems should be updated to include actividadinusual2026.fwh.is in their deny lists, and users should be educated to recognize credential theft tactics, particularly those involving fake login prompts or urgent account verification requests. Monitoring for connections to 185.27.134.221 or related subdomains under fwh.is is recommended for retrospective threat hunting.

VirusTotal
VirusTotal
20 det.
URLQuery
यूआरएलक्वेरी
6 threat alerts
सीएफ रडार
दुर्भावनापूर्ण
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
ZeroSSL GmbH / ZeroSSL ECC DV SSL CA 2
आयु
1.8 yr
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज VirusTotal 20 / 91 यूआरएलक्वेरी 6 threat-system alerts फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार provider verdict: malicious URLScan capture संग्रहित रिपोर्ट URLScan verdict malicious डीएनएस ब्लॉक जाँच नहीं की गई TLS valid certificate, 47d कौन है 22 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 6 alerts
Detection System Indicator Verdict Alert
DigiCert UltraDNS suspended-domain.net malicious Sinkholed
Cloudflare DNS actividadinusual2026.fwh.is malicious Sinkholed
Hagezi Threat Feed actividadinusual2026.fwh.is malicious Sinkholed
DigiCert UltraDNS actividadinusual2026.fwh.is malicious Sinkholed
DNS4EU actividadinusual2026.fwh.is malicious Sinkholed
Quad9 DNS actividadinusual2026.fwh.is malicious Sinkholed
CF Cloudflare Radar Verdict दुर्भावनापूर्ण
Phishing

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
12/13
Sent Report Recorded
Stored sent-report record for registrar FreeWebHostingArea, hosting provider, 1 abuse contact
abuse@ifastnet.com
12/07/2026

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict दुर्भावनापूर्ण score 100 Phishing brand: Microsoft report ↗
सर्वर / ASN openresty · AS34119 WILDCARD-AS Wildcard UK Limited, GB
IP प्रतिष्ठा abuse score 0/100 0 reports checked 09/08/2026
Registrar (base domain) FreeWebHostingArea MY(MY)
दुरुपयोग संपर्कabuse@ifastnet.com
IP पता 185.27.134.221 GB
भौगोलिक स्थानGB London, GB
नेटवर्कAS34119 · Wildcard UK Limited
रिवर्स IPviewdns.info → rapiddns.io →
Registration (base domain)fwh.is · निर्मित 01/11/2024 Expires 01/11/2026
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला10/07/2026
DOM Analysisanalyzed 10/07/2026score 88/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://actividadinusual2026.fwh.is/
नेमसर्वरns1.byet.orgns2.byet.orgns3.byet.orgns4.byet.org
TLS Fingerprint
TLS Observationvalid from 08/07/2026scanned 10/07/2026
TLS SAN Domainsfwh.is
Case ID
पेज शीर्षक
Iniciar
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता ZeroSSL GmbH / ZeroSSL ECC DV SSL CA 2 · valid for 47 days
तकनीकें · 2 identified
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org 100% विश्वास
OpenResty
Web servers

OpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.

openresty.org 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

20 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 17 detections
BitDefender
Chong Lua Dao
Cluster25
CRDF
साइरेडार
ईएसईटी
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
LevelBlue
Lionic
MalwareURL
नेटक्राफ्ट
PrecisionSec
Seclookup
सोफोस
VIPRE
वेबरूट
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of actividadinusual2026.fwh.is · checked Jul 10, 2026

82
Needs Work
Performance
FCP
3.31s
First Contentful Paint
LCP
3.76s
Largest Contentful Paint
CLS
0.021
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
3.31s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

साक्ष्य और बाहरी रिपोर्टें

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260712-8A90E7 Recipient: abuse@ifastnet.com
Page title stored with report: Domain Suspended
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 633.6 KB

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/actividadinusual2026.fwh.is"
  title="PhishDestroy threat report for actividadinusual2026.fwh.is"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>