microsoftonilne[.]ru
साक्ष्य सारांश
The domain microsoftonilne.ru is currently active and classified as a high‑risk brand‑impersonation campaign targeting Microsoft. Infrastructure analysis shows the domain resolves to IP 87.242.79.60, which is assigned to AS49063 (Data Storage Center JSC) in Russia. The domain is served through Cloudflare nameservers (earl.ns.cloudflare.com, reza.ns.cloudflare.com) and presents a valid Let's Encrypt certificate (E7). Observed web server software includes Caddy, and the site supports HTTP/3. Email delivery is handled by Mailgun, confirmed by MX records pointing to mxa.eu.mailgun.org and mxb.eu.mailgun.org. Threat intelligence sources indicate the domain appears in 16 AlienVault OTX pulses and has been flagged by 12 of 95 VirusTotal scanners. It is listed on two public blocklists and is already blocked by PhishDestroy and PhishingDB. The Gridinsoft trust score is 0/100, reinforcing the malicious assessment. The campaign is described as a tech‑support scam, but the actual page content has not been publicly analysed, leaving the exact lure and credential‑capture mechanisms uncertain. Defenders should add the domain and its resolving IP to network‑level blocklists, enforce DNS filtering for the associated Cloudflare nameservers, and monitor outbound connections to the identified IP. Continuous re‑scanning with multi‑engine services is advised to capture any future changes in detection status.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026
पहचान समयरेखा
-
VirusTotal
12 → 13
-
VirusTotal
13 → 14
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of microsoftonilne.ru · checked Mar 2, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।