mediasync[.]sh
“Yоutubе | Copyright strikes”
संग्रहीत अवलोकन
देखा गया शीर्षक अंतर
साक्ष्य सारांश
This domain is flagged as a high-risk credential theft operation impersonating YouTube to deceive users into surrendering account credentials. The fraudulent page mimics YouTube’s copyright strike notification system, a tactic designed to exploit creators’ fear of account termination. Analysis indicates the domain is engineered to harvest login details, which may subsequently be used for unauthorized access, content manipulation, or further phishing campaigns targeting linked accounts. Infrastructure analysis reveals the domain was registered on January 30, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with malicious registrations. It resolves to IP address 104.21.36.252, hosted on Cloudflare’s network (AS13335), which is commonly used to obfuscate the true origin of phishing infrastructure. The SSL certificate is issued by Google Trust Services (WE1), providing a false sense of legitimacy. Detection metrics show 22 out of 95 security vendors on VirusTotal flag the domain as malicious, while Google Safe Browsing and at least one additional security blocklist have classified it as phishing. The domain remains active and unmitigated at the time of this report. To mitigate risks associated with this credential theft campaign, network administrators should implement DNS-level blocking for mediasync.sh and its resolving IP. End users should be advised to verify the legitimacy of any copyright-related notifications by accessing YouTube’s official platform directly, rather than following embedded links. Multi-factor authentication (MFA) should be enforced on all accounts to reduce the impact of credential compromise. Organizations are further advised to monitor for unauthorized access attempts originating from this domain or associated IP ranges, particularly in environments where YouTube accounts are used for business purposes.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
तकनीकें
6 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of mediasync.sh · checked Jun 1, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।