lg[.]qeymqo2[.]sa[.]com
“Site is created successfully!”
lg.qeymqo2.sa.com — सामग्री अनुपलब्ध. साक्ष्य सारांश: VirusTotal 10/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Fortinet); Google Safe Browsing flagged; PhishDestroy score 80/100. रजिस्ट्रार: Sav.com.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
On July 24, 2026, the domain lg.qeymqo2.sa.com was identified as a high‑risk generic phishing infrastructure that has been taken offline. The site returned the page title “Site is created successfully!” and did not present an SSL certificate, indicating that all communications were conducted over clear‑text HTTP. VirusTotal records show that 10 of 93 scanned security vendors flagged the domain, reflecting a moderate detection consensus. Gridinsoft assigned a trust score of 0 out of 100, and Google Safe Browsing classifies the URL as a social‑engineering threat.
The domain resolves to the IPv4 address 178.16.53.103, which is registered to AS202412 Omegatech LTD and geolocated to the Netherlands. Hosting evidence points to the registrar Sav.com, LLC, with the domain originally created on June 25, 1998. Authoritative name servers are ns1.centralnic.net through ns4.centralnic.net. The domain appears on a single public blocklist and has been specifically blocked by the PhishDestroy sinkhole.
No SSL certificate was observed, and the lack of encryption further reduces confidence in the site’s legitimacy. While the page title suggests a generic success message, no additional content analysis is available, leaving the exact phishing payload or targeted brand undefined. Defenders should continue to block the IP 178.16.53.103 and the associated name servers at the network perimeter, update URL filtering rules to include lg.qeymqo2.sa.com, and monitor for any re‑registration attempts. Given the high risk rating and the combination of vendor detections, trust‑score zero, and Safe Browsing flag, the domain should be treated as malicious until a formal takedown is confirmed.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।