सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 20। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

sgin9-alibaba[.]mdbgo[.]io

“Alibaba Manufacturer Directory - Suppliers, Manufacturers, Exporters & Importers”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता सामग्री अनुपलब्ध नवीनतम अवलोकन में सामग्री अनुपलब्ध थी
वायरस का कुल पता लगाना: 20/95 ब्रांड प्रतिरूपण: Alibaba
05/11/2025 Alibaba
रिपोर्ट सारांश

sgin9-alibaba.mdbgo.io — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Alibaba; घोटाले का प्रकार: E Commerce Scam. साक्ष्य सारांश: VirusTotal 20/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Cluster25); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. रजिस्ट्रार: OVH SAS.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
1FB53308
स्कोर
95/100

This domain, sgin9-alibaba.mdbgo.io, poses a direct threat as a brand impersonation site designed to mimic Alibaba’s legitimate manufacturer and supplier directory. The site’s primary objective is to deceive users into entering sensitive credentials, such as corporate login details or financial information, by presenting a near-identical interface to Alibaba’s official platform. Given the elevated risk level and the domain’s historical activity, it is highly likely that any data submitted would be harvested for fraudulent purposes, including unauthorized account access, financial theft, or further phishing campaigns targeting business partners or customers. The use of a well-known brand like Alibaba increases the likelihood of successful deception, particularly among users unfamiliar with the nuances of legitimate domain structures or SSL certificate issuers.

Analysis indicates that sgin9-alibaba.mdbgo.io was registered on October 19, 2020, through OVH SAS, a registrar commonly associated with both legitimate and malicious domains. The domain resolves to the IP address 93.105.88.216, located in Poland under AS50606 (Horyzont Technologie Internetowe sp.z.o.o.), an autonomous system that has previously hosted other suspicious domains. The SSL certificate, issued by Let’s Encrypt (R13), is valid but does not mitigate the risk, as malicious actors frequently leverage free certificates to lend a false sense of legitimacy. VirusTotal detection rates confirm the domain’s malicious nature, with 20 out of 95 security vendors flagging it as a threat. Additionally, the domain appears on two security blocklists, PhishDestroy and PhishingDB, further corroborating its classification as a brand impersonation site. The page title, "Alibaba Manufacturer Directory - Suppliers, Manufacturers, Exporters & Importers," is a direct copy of Alibaba’s official branding, reinforcing the site’s deceptive intent.

Users who have visited sgin9-alibaba.mdbgo.io or interacted with its content should take immediate action to mitigate potential risks. First, disconnect the affected device from the network to prevent any ongoing data exfiltration. Next, reset all credentials that may have been entered on the site, prioritizing corporate accounts, email logins, and financial platforms. Enable multi-factor authentication (MFA) on all critical accounts to add an additional layer of security. Monitor accounts for unauthorized transactions or suspicious activity, and report any anomalies to the relevant security teams or financial institutions. If the device used to access the site is part of a corporate network, notify the internal security team to conduct a forensic analysis. Finally, block the domain and its associated IP (93.105.88.216) at the network level to prevent future access. Given the domain’s current offline status, users should remain vigilant for similar impersonation attempts, particularly those using slight variations of legitimate domain names or branding.

VirusTotal
VirusTotal
20 det.
सीएफ रडार
दुर्भावनापूर्ण
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
समाप्त या असत्यापित -133d
आयु
5.8 yr
देखी गई स्थिति
सामग्री अनुपलब्ध
PhishDestroy
विनाश सूची
सूचीबद्ध
डेटा कवरेज VirusTotal 20 / 95 यूआरएलक्वेरी रिपोर्ट संग्रहीत - विस्तृत निर्णय लंबित फ़िशस्टैट्स checked — no match recorded ओटीएक्स no community references सीएफ रडार provider verdict: malicious URLScan capture संग्रहित रिपोर्ट URLScan verdict malicious डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है 71 mo old स्क्रीनशॉट 2 captures · 2 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
CF Cloudflare Radar Verdict दुर्भावनापूर्ण
Security threats Phishing Phishing Malware Malware

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
17/18

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict दुर्भावनापूर्ण score 100 Phishing brand: Alibaba report ↗
सर्वर / ASN nginx/1.17.5 · AS50606 VIRTUAOPERATOR-AS Horyzont Technologie Internetowe sp.z.o.o., PL
IP प्रतिष्ठा abuse score 0/100 0 reports checked 18/06/2026
Registrar (base domain) OVH SAS FR(FR)
दुरुपयोग संपर्कabuse@ovh.net
IP पता 93.105.88.216 PL
भौगोलिक स्थानPL Warsaw, PL
नेटवर्कAS50606 · Horyzont Technologie Internetowe sp.z.o.o.
रिवर्स IPviewdns.info → rapiddns.io →
Registration (base domain)mdbgo.io · निर्मित 19/10/2020 Expires 19/10/2026
पहली अनुपलब्धता तक का समय 116 days
हम क्या मापते हैं पहली संग्रहीत दुरुपयोग रिपोर्ट से लेकर पहली बार अवलोकन तक कि सामग्री अनुपलब्ध थी, बीता हुआ समय। इससे कारण स्थापित नहीं होता.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला05/11/2025
DOM Analysisanalyzed 29/07/2026score 0/1001 brand signal
IoC Extractionscanned 02/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://sgin9-alibaba.mdbgo.io/
नेमसर्वरdns17.ovh.netns17.ovh.net
TLS Fingerprint
TLS Observationvalid from 08/01/2026scanned 11/03/2026
पेज शीर्षक
Alibaba Manufacturer Directory - Suppliers, Manufacturers, Exporters & Importers
Impersonates
Aliexpress
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता Let's Encrypt / R13
तकनीकें · 3 identified
Node.js
Programming languages

Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.

nodejs.org 100% विश्वास
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org 100% विश्वास
Express
Web frameworks Web servers

Express is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs.

expressjs.com 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

20 / 95 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
ADMINUSLabs
Criminal IP
alphaMountain.ai
BitDefender
Cluster25
साइरेडार
DNS8
ईएसईटी
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
कास्परस्की
Lionic
Phishing Database
PREBYTES
सोफोस
यूआरएलक्वेरी
VIPRE
वेबरूट

संग्रहीत साक्ष्य

Wayback Machine Snapshot
साक्ष्य समीक्षा के लिए एक ऐतिहासिक स्नैपशॉट उपलब्ध है
View Archive

साक्ष्य और बाहरी रिपोर्टें

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/sgin9-alibaba.mdbgo.io"
  title="PhishDestroy threat report for sgin9-alibaba.mdbgo.io"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>