ptshopee617[.]blogspot[.]com
“SHOPEE”
संग्रहीत अवलोकन
देखा गया शीर्षक अंतर
साक्ष्य सारांश
This domain, ptshopee617.blogspot.com, is identified as a generic phishing site targeting users of the e-commerce platform Shopee. Analysis confirms the domain was designed to mimic legitimate Shopee login or checkout pages, likely aiming to harvest user credentials, payment details, or personal information. The page title explicitly displays 'SHOPEE,' reinforcing the impersonation attempt. No specific drainer kit signatures were detected in the initial scan, though the use of Blogger as a hosting platform is a common tactic to evade detection and leverage trusted infrastructure. Infrastructure analysis reveals the following technical indicators: the domain is flagged by 19 out of 95 security vendors on VirusTotal, indicating broad consensus on its malicious nature. It is registered through Google Blogger, a free platform often exploited for phishing due to its accessibility and SSL support. The domain resolves to the IP address 142.251.16.132, associated with Google’s infrastructure, and employs an SSL certificate issued by Google Trust Services. Additional technologies detected include Java, Python, OpenGSE, and HTTP/3, which may be used to enhance the site’s functionality or obfuscate malicious activity. The domain appears on one security blocklist and has a Gridinsoft trust score of 0/100, further confirming its high-risk status. No creation date is publicly available due to the use of Blogger’s subdomain structure, though the domain’s recent takedown suggests it was operational for a limited period. As of the latest assessment, ptshopee617.blogspot.com has been taken offline, likely following reports to the hosting provider or automated takedown mechanisms. However, the elevated risk persists due to the potential for the threat actors to re-deploy the phishing infrastructure under a new subdomain or domain. Users who interacted with the site should immediately reset credentials for Shopee and any other accounts where the same login details were reused. Organizations are advised to block the domain and its associated IP address (142.251.16.132) at the network level to prevent accidental access. Monitoring for similar subdomains on Blogger or other free hosting platforms is recommended, as this tactic remains prevalent in phishing campaigns.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026
पहचान समयरेखा
-
VirusTotal
13 → 19
तकनीकें
6 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of ptshopee617.blogspot.com · checked Jun 26, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।