Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@godaddy.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
microsoftauthenticatorappdownload[.]com
microsoftauthenticatorappdownload.com की फ़िशिंग और सुरक्षा जाँच
“microsoftauthenticatorappdownload.com”
microsoftauthenticatorappdownload.com — अंतिम ज्ञात सक्रिय (HTTP 200). ब्रांड प्रतिरूपण: Microsoft; घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. रजिस्ट्रार: GoDaddy.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Evidence Analysis
The domain microsoftauthenticatorappdownload.com was identified as a brand impersonation threat targeting Microsoft users. Currently marked as under investigation and offline, this domain was designed to deceive visitors into believing it was an official Microsoft Authenticator download portal. The phishing campaign leverages Microsoft's trusted brand to harvest credentials or install malware, posing a significant risk to users who may inadvertently submit sensitive information.
Technical analysis reveals that the domain was created on May 8, 2026, and registered through GoDaddy.com, LLC. It resolves to IP address 76.223.105.230 and is secured with an SSL certificate issued by Starfield Technologies, Inc. (Starfield Secure Certificate Authority - G2). Despite its malicious intent, VirusTotal shows 0 detections out of 95 security vendors, indicating that traditional signature-based detection has not yet flagged the domain. However, it appears on 3 security blocklists and is referenced in 1 AlienVault OTX threat intelligence pulse, suggesting that community-driven threat sharing has recognized the risk.
Given that the domain is now offline, the immediate threat is mitigated. However, users should remain vigilant against similar impersonation domains. PhishDestroy recommends verifying URLs directly through official Microsoft channels, avoiding unsolicited download links, and enabling multi-factor authentication to protect accounts. Organizations should monitor for related domains and educate employees about brand impersonation tactics to prevent future compromises.
डेटा कवरेज12 recorded checks
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
PD-20260508-CDD5E1 Recipient: abuse@godaddy.com Victim safety and official reportingImmediate actions and verified reporting channels
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।