info-simple[.]to
“404 Error”
संग्रहीत अवलोकन
देखा गया शीर्षक अंतर
साक्ष्य सारांश
This domain, info-simple.to, is flagged as an elevated-risk generic phishing infrastructure designed to deceive users through a fake 404 error page. Analysis indicates the threat type does not target a specific brand but instead employs a low-interaction decoy to mask malicious intent, potentially redirecting victims to credential harvesters or malware distribution endpoints. The domain’s use of a fabricated error page suggests an attempt to evade detection while maintaining operational readiness for follow-on attacks. Infrastructure analysis reveals multiple high-confidence indicators of compromise. The domain resolves to IP 95.129.234.38, hosted on AS57724 (DDOS-GUARD LTD, RU), a network frequently associated with bulletproof hosting. It was registered on August 15, 2025, through the Government of the Kingdom of Tonga’s registry, a jurisdiction with minimal enforcement oversight. Security vendors on VirusTotal flagged the domain at a ratio of 11/95, while it appears on at least one security blocklist. The SSL certificate, issued by Let’s Encrypt (R12), provides nominal encryption but lacks organizational validation, a common trait in phishing infrastructure. The domain’s current status is offline, though historical patterns suggest potential reactivation under altered configurations. Mitigation requires a multi-layered approach tailored to the observed threat characteristics. Network-level protections should block resolution to 95.129.234.38 and monitor for related domains registered via the Tonga ccTLD (.to). Endpoint security systems should prioritize detection of fake error pages, particularly those returning HTTP 404 responses without legitimate server logs. Organizations are advised to implement strict certificate validation policies, flagging domains with short-lived Let’s Encrypt certificates issued within the past 30 days. User awareness training should emphasize the risks of interacting with error pages from unfamiliar domains, even when no overt malicious content is displayed. Given the domain’s recent creation and rapid takedown, continuous monitoring for re-registration or DNS changes is recommended.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
VirusTotal
11 → 12
-
VirusTotal
12 → 11
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of info-simple.to · checked Mar 2, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।