www3-vpass[.]omsgx[.]cn
“【重要】メンテナンスのお知らせ|VJAグループ Vpass”
www3-vpass.omsgx.cn — सामग्री अनुपलब्ध (HTTP 502). साक्ष्य सारांश: VirusTotal 18/95 (ADMINUSLabs, Criminal IP, BitDefender, CyRadar, ESET); CF Radar malicious; PhishDestroy score 95/100. रजिस्ट्रार: 商中在线科技股份有限公司.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain, www3-vpass.omsgx.cn, is identified as a credential phishing site impersonating the VJA Group Vpass service. Analysis of the page title, 「重要】メンテナンスのお知らせ|VJAグループ Vpass, confirms the intent to deceive users into submitting login credentials under the guise of a maintenance notification. The domain is currently offline, but prior activity indicates a targeted campaign against Japanese-speaking users associated with VJA Group services. Infrastructure analysis reveals the domain was registered on May 17, 2025, through 商中在线科技股份有限公司 and resolved to the IPv6 address 2a06:98c1:3121::3, hosted on AS13335 (Cloudflare, Inc.). Security vendors flagged the domain as malicious, with 18 of 95 VirusTotal engines detecting it. The domain appears on two security blocklists, including PhishDestroy and PhishingDB. No SSL certificate was present, increasing the likelihood of interception or manipulation of user-submitted data. The domain has been taken offline, but residual risk remains for users who may have interacted with it prior to deactivation. Organizations are advised to monitor network logs for connections to www3-vpass.omsgx.cn or the associated IPv6 address and reset credentials for any accounts potentially exposed. Security teams should update blocklists to include this domain and its indicators, and conduct user awareness training to recognize phishing attempts leveraging brand impersonation and fake maintenance notifications.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।