user[.]ca-userzone[.]net
user.ca-userzone.net की फ़िशिंग और सुरक्षा जाँच
“Client Area”
user.ca-userzone.net — सामग्री अनुपलब्ध (HTTP 502). घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 7/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, Kaspersky); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. रजिस्ट्रार: PDR.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain user.ca-userzone.net was registered on July 14, 2026 and remains active as of the report date, July 23, 2026. Registration was processed through PDR Ltd. d/b/a PublicDomainRegistry.com, and the authoritative name servers are listed as lennon.ns.cloudflare.com and mona.ns.cloudflare.com, indicating use of Cloudflare’s DNS infrastructure. DNS resolution points to the IPv4 address 188.114.97.3, a host that is currently associated with a single security blocklist entry and has been flagged by the PhishDestroy vendor.
No additional detection vendors, Safe Browsing lists, or Open Threat Exchange (OTX) references are present in the available intelligence. SSL certificate details, HTTP response codes, page title, or any observed content have not been disclosed, leaving the surface‑level characteristics of the site unverified. The limited evidence suggests that the domain is being employed for a generic phishing campaign, likely presenting a counterfeit login interface to harvest credentials.
However, the exact brand or service being spoofed has not been identified, and the lack of public content analysis prevents confirmation of the specific lure. Defenders should prioritize blocking traffic to 188.114.97.3 and adding user.ca-userzone.net to internal blocklists, monitor for any related domain variations that share the same registrar or name‑server configuration, and continue to observe threat‑intel feeds for further artefacts such as page snapshots or additional detection counts. Ongoing investigation is required to determine the full scope of the campaign, including any credential‑stealing modules or downstream infrastructure that may be leveraged once a victim interacts with the site.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
Registration: ca-userzone.net
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For the registrable domain ca-userzone.net behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें · 4 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 100% विश्वासCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% विश्वासCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वासवायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साक्ष्य और बाहरी रिपोर्टें
PD-20260723-4A8B14 Recipient: abuse-contact@publicdomainregistry.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।