सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 17। किसी मैच की रिपोर्ट करने वाली सार्वजनिक ब्लॉक सूचियाँ: 2। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

quickbookhq[.]com

quickbookhq.com की फ़िशिंग और सुरक्षा जाँच

“reCAPTCHA Verification”

धमकी भरा फैसला गंभीर 100/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
जोखिम संकेत
वायरस का कुल पता लगाना: 17/91 Spamhaus DBL: DBL_PHISH संग्रहीत ब्लॉकलिस्ट मिलान: 2
17/91 VT OTX: 1 ref 15/06/2026 09/05/2026 के बाद से अनुपलब्ध है 2 Blocklists TM TM
रिपोर्ट सारांश

quickbookhq.com — असत्यापित. साक्ष्य सारांश: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. रजिस्ट्रार: OwnRegistrar.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
E917066E
स्कोर
100/100

This domain, quickbookhq.com, is identified as a high-risk phishing infrastructure designed to impersonate QuickBooks authentication portals. Analysis indicates the site employs a fraudulent reCAPTCHA verification page to deceive users into submitting login credentials, financial details, or other sensitive information. The deceptive interface mimics legitimate security measures, increasing the likelihood of successful credential harvesting from unsuspecting victims. Infrastructure analysis reveals multiple technical indicators supporting its malicious classification. The domain was registered on April 27, 2026, through OwnRegistrar, Inc., an entity frequently associated with suspicious registrations. It resolves to the IP address 91.202.233.170, hosted by Prospero OOO in Turkmenistan, a network segment with a history of hosting phishing and malware distribution sites. Detection metrics further validate the threat: 17 out of 95 security vendors on VirusTotal flag the domain as malicious, while three independent security blocklists—PhishDestroy, MetaMask, and SEAL—have actively blocked access. The domain’s SSL certificate, issued by Let’s Encrypt, provides minimal assurance, as automated certificate authorities are routinely exploited by threat actors to lend superficial legitimacy to phishing sites. Users who interacted with quickbookhq.com should immediately take corrective measures to mitigate potential compromise. Any credentials entered on the site must be considered exposed and should be reset across all platforms where identical or similar passwords were used. Financial institutions and relevant service providers should be notified to monitor for unauthorized transactions or account modifications. System scans using updated security tools are recommended to detect potential secondary infections or data exfiltration. Organizations should also review logs for connections to 91.202.233.170 and the domain itself, as these serve as actionable indicators of compromise for incident response procedures.

VirusTotal
VirusTotal
17 det.
OTX references
TLS प्रमाणपत्र
समाप्त या असत्यापित -39d
आयु
3 mo
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
डेटा कवरेज VirusTotal 17 / 91 यूआरएलक्वेरी जाँच नहीं की गई फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स 1 community reference सीएफ रडार scan completed URLScan capture not submitted URLScan verdict निष्कर्ष उपलब्ध नहीं डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है 3 mo old स्क्रीनशॉट कैद नहीं हुआ चेन पुनर्निर्देशित करें जांच नहीं की गई

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
9/11

सार्वजनिक ब्लॉकलिस्ट स्थिति

डोमेन इंटेलिजेंस

डोमेन
सर्वर / ASN AS200593 PROSPERO OOO
IP प्रतिष्ठा abuse score 0/100 0 reports checked 13/07/2026
रजिस्ट्रार OwnRegistrar US(US)
IP पता 91.202.233.170 TM
भौगोलिक स्थानTM Ashgabat, TM
नेटवर्कAS200593 · Prospero OOO
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 27/04/2026 (103d)
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला15/06/2026
नेमसर्वरc.dnspod.com
TLS Fingerprint
TLS Observationvalid from 02/04/2026scanned 27/04/2026
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।
तकनीकें · 4 identified
PHP
Programming languages

PHP is a general-purpose scripting language used for web development.

php.net 100% विश्वास
Ubuntu
Operating systems

Ubuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.

www.ubuntu.com 100% विश्वास
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org 100% विश्वास
reCAPTCHA
सुरक्षा

reCAPTCHA is a free service from Google that helps protect websites from spam and abuse.

www.google.com 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

17 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
साइरेडार
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
कास्परस्की
LevelBlue
Lionic
PrecisionSec
Seclookup
SOCRadar
सोफोस

साक्ष्य और बाहरी रिपोर्टें

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/quickbookhq.com"
  title="PhishDestroy threat report for quickbookhq.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।