helis[.]vn
“Helis – Helis giải pháp hòa lưới điện năng lượng mặt trời”
helis.vn — असत्यापित. साक्ष्य सारांश: VirusTotal 9/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, ESET, Emsisoft); PhishDestroy score 88/100. रजिस्ट्रार: VNPT-VN (ASN: 45899).
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain is flagged as a high-risk generic phishing site and remains active as of July 12, 2026. It is blocked by PhishDestroy and PhishingDB, and appears on two additional security blocklists. VirusTotal analysis shows 11 of 95 security vendors flag this domain as malicious. The page title indicates it is presenting itself as Helis, a solar energy grid solution provider in Vietnam. The domain resolves to IP 14.177.232.31, hosted in Vietnam by VNPT Corp (AS45899), and was registered through the same provider. SSL encryption is provided by a Let's Encrypt certificate (R13), and the site enforces HSTS. Nameservers are ns1.pavietnam.vn, ns2.pavietnam.vn, and nsbak.pavietnam.net. AlienVault OTX has identified this domain in 18 threat intelligence pulses, and Gridinsoft gives it a trust score of 0/100, indicating high confidence in its malicious nature. The exact phishing method or targeted brand beyond the Helis name is not specified in available intelligence; defenders should treat any unsolicited emails, links, or credentials submitted to this domain as compromised. Infrastructure analysis confirms the domain is actively serving content (HTTP 200) and is likely part of a broader phishing campaign against Vietnamese energy or utility users. Defenders should block the domain at network and email gateways, monitor for related subdomains or IPs on the same ASN, and investigate any user interactions for credential theft or data exfiltration. No additional technical details about the phishing kit or landing page content are available at this time.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 2 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।