सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 4। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
5 months
Reports sent
1
Current status
Observed active at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

exosites[.]st

“Exo”

धमकी भरा फैसला गंभीर 71/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
वायरस का कुल पता लगाना: 4/91 Spamhaus DBL: DBL_SPAM URLQuery threat systems: 1 alert
06/03/2026 1 Report Sent

साक्ष्य सारांश

आलोचनात्मक
Evidence score
71/100

The domain exosites.st was first observed on March 06, 2026 and is currently classified as a generic_phishing site with a high risk rating. It returns an HTTP 301 redirect and is served over a valid Let's Encrypt certificate (issuer E8). VirusTotal records show that 3 of 95 scanned security vendors have flagged the domain, indicating that automated detection is limited but present. Registration data lists ST Registry as the registrar, and the domain is hosted on nameservers ns1.eggywall.cc and ns2.eggywall.cc. DNS resolution points to IP address 151.247.193.142, which is mapped to France but owned by AS399486 (12651980 CANADA INC.). The low Gridinsoft trust score of 1 out of 100 further suggests a malicious reputation. The infrastructure footprint is modest, with the domain appearing on only one public security blocklist and being blocked by the PhishDestroy feed. The combination of a fresh registration, a low‑reputation IP, and a generic SSL certificate aligns with typical phishing campaign deployment patterns. The high risk designation reflects the potential for credential harvesting or malicious redirection, despite the limited number of vendor detections. Defenders should immediately add exosites.st and its resolving IP 151.247.193.142 to deny lists and ensure that web filtering solutions block any HTTP 301 responses from this host. Continuous monitoring of the associated nameservers and the AS399486 range is advised, as the operators may pivot to additional domains. Updating intrusion detection signatures to flag the domain’s TLS fingerprint and low trust score will reduce exposure while investigations continue.

भेजे गए प्रमाण का स्नैपशॉट

भेजा गया
लेज़र रिकॉर्ड
1
केस आईडी
PD-20260306-62E3C3
कैप्चर किए गए पेज का शीर्षक
Exo
PDF दस्तावेज़
PDF प्रमाण
प्रमाण का पूरा पाठ
Registrar: Public Interest Registry Accredited Registrar Compliance Set (not reseller, real registrar entities only) (United States/Global)
Policy Violations: “Registrars under PIR framework recognize phishing, malware and DNS abuse as prohibited and may be compelled to suspend domains.”
Applicable Laws: ICANN DNS Abuse; CFAA; applicable national laws
VirusTotal
VirusTotal
4 det.
URLQuery
यूआरएलक्वेरी
1 threat alert
TLS प्रमाणपत्र
समाप्त या असत्यापित -75d
आयु
5 mo
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1

Data Coverage

VirusTotal 4 / 91 यूआरएलक्वेरी 1 threat-system alert फ़िशस्टैट्स checked — no match recorded ओटीएक्स no community references सीएफ रडार no data URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है 5 mo old स्क्रीनशॉट 4 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
सुरक्षा संकेत
GS Gridinsoft Analysis
'', 00 PM 3/28 Suspicious Website 30 AM Blacklisted Blacklisted by Security Providers Clean Hosting
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU eggywall.cc malicious Sinkholed

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
10/11

ब्लॉकलिस्ट कवरेज

10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026

10 निगरानी वाले बाहरी स्रोत कोई मिलान नहीं

पहचान समयरेखा

  1. VirusTotal

    0 → 2

  2. Cloudflare Radar

    Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें

  3. डोमेन स्थिति

    पहुँच योग्य → पहुँच योग्य नहीं

  4. डोमेन स्थिति

    पहुँच योग्य नहीं → पहुँच योग्य

  5. डोमेन स्थिति

    पहुँच योग्य → पहुँच योग्य नहीं

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN Apache/2.4.52 (Ubuntu) · AS399486 12651980 CANADA INC.
IP प्रतिष्ठा IP abuse confidence 0/100 0 reports checked 15/07/2026
रजिस्ट्रार ST Registry US(US)
दुरुपयोग संपर्कfloysjjz@gmail.com, report@abuseradar.com
IP पता 151.247.193.142 FR
भौगोलिक स्थानFR Paris, FR
नेटवर्कAS399486 · 12651980 CANADA INC.
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 06/03/2026 (159d)
Elapsed Since First Report 7 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: असत्यापित.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
पहली बार पता चला06/03/2026
DOM Analysisanalyzed 09/07/2026DOM analysis score 71/100
Submitted URLhttp://exosites.st/
नेमसर्वरns1.eggywall.ccns2.eggywall.cc
TLS अवलोकन28/02/2026 से मान्य15/03/2026 को स्कैन किया गया
पेज शीर्षक
Exo
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता Let's Encrypt / E8
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

4 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 3 detections
alphaMountain.ai
CRDF
Fortinet
Gridinsoft

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें

बाहरी उपकरण

GridinsoftGridinsoft विश्वास स्कोर 1/100स्थिति: Suspiciousस्रोत खोलें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/exosites.st"
  title="PhishDestroy threat report for exosites.st"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>