msmeet[.]us
“Free Online Meetings & Video Calls | Microsoft Teams”
साक्ष्य सारांश
Analysis of the domain msmeet.us, observed as offline as of the report date, shows several indicators consistent with a Microsoft‑related brand‑impersonation campaign. The domain was registered on 27 February 2026 through NameCheap, Inc., and resolves to the IP address 23.254.167.21, which belongs to the Hostwinds LLC network (ASN 54290) located in the United States. No TLS certificate is presented, meaning the site is served over plain HTTP, which reduces the credibility of a legitimate Microsoft service. The authoritative nameservers dns1.registrar-servers.com and dns2.registrar-servers.com are typical of registrar‑provided DNS and do not suggest a custom infrastructure. The page title returned by the now‑taken‑down site reads "Free Online Meetings & Video Calls | Microsoft Teams", directly invoking the Microsoft Teams brand.
The listed brand target is Microsoft, and the documented scam type is a tech‑support scam, indicating that the operator likely attempted to convince victims that their Microsoft account or device required urgent assistance. Detection services have flagged the domain. VirusTotal reports a single positive detection out of 93 scanning engines, and three independent blocklists (PhishDestroy, MetaMask, SEAL) have already listed the domain. The presence on multiple blocklists confirms that security vendors have observed malicious activity associated with the domain.
No SSL certificate, combined with the offline status, suggests the site may have been short‑lived or taken down after detection. Uncertainties remain regarding the exact payload delivered to victims, the extent of any credential harvesting, and whether additional infrastructure (e.g., command‑and‑control servers) is linked to the same IP. Defenders should continue to block msmeet.us at perimeter and DNS layers, monitor for any resurgence of the same IP or registrar‑level registrations, and update detection rules to flag the observed page title and brand‑impersonation pattern.
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-20260227-B9CDC6- कैप्चर किए गए पेज का शीर्षक
- Free Online Meetings & Video Calls | Microsoft Teams
- PDF दस्तावेज़
- PDF प्रमाण
प्रमाण का पूरा पाठ
Policy Violations: Domain Registration Agreement prohibits hacking, misuse of domain to conduct attacks, scam and fraudulent activities; AUP allows immediate suspension
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
VirusTotal
0 → 1
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।