zefixglobalholdingltd[.]com
“HOME”
zefixglobalholdingltd.com — सामग्री अनुपलब्ध (HTTP 502). ब्रांड प्रतिरूपण: ["google"]; घोटाले का प्रकार: Generic Phishing. साक्ष्य सारांश: VirusTotal 3 detections (engine total unavailable) (Netcraft, Seclookup, SOCRadar); URLQuery 2 alerts; PhishDestroy score 65/100. रजिस्ट्रार: Ultahost.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of the domain zefixglobalholdingltd.com shows a recent registration on March 11, 2026 through the registrar Ultahost, Inc. The domain resolves to the IPv4 address 192.142.10.5, which is hosted in the Netherlands and belongs to AS214036 (Ultahost, Inc.). No SSL certificate is presented, indicating that the site was served over plain HTTP. The authoritative nameservers are ns1.ultahost.com, ns2.ultahost.com, ns3.ultahost.com, and ns4.ultahost.com, all pointing to the same hosting provider. The page that was observed before the site was taken offline returned the title "HOME" and was built with a typical web stack that includes WordPress, MySQL, PHP, Bootstrap, LiteSpeed, and front‑end components such as Slider Revolution, Twitter widgets, and Smartsupp live‑chat integration.
VirusTotal scans reported that three out of ninety‑five security vendors flagged the domain, and the domain appears on a single external blocklist. It has also been added to the PhishDestroy blocklist, confirming that security operators have identified it as malicious. The current operational status is offline, but the infrastructure footprint remains observable. Defenders should continue to block the domain name and the associated IP address, add the four Ultahost nameservers to watchlists for rapid detection of similarly configured domains, and monitor for any re‑activation of the site.
Network sensors should flag any outbound connections to 192.142.10.5 and correlate with other Ultahost‑hosted assets. Because the site employed a generic WordPress installation without a TLS layer, it is likely to have been used for credential harvesting or credential‑stealing pages typical of generic phishing campaigns. Continuous threat‑intel feeds should be consulted for any new detections related to this domain or its hosting provider.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें · 15 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Popular CSS framework for responsive, mobile-first web development.
High-performance web server compatible with Apache configurations.
Live chat and visitor recording tool for customer support.
Touch-enabled jQuery plugin for responsive carousel sliders.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of zefixglobalholdingltd.com · checked Mar 11, 2026
साक्ष्य और बाहरी रिपोर्टें
PD-20260311-9FCD4A Recipient: abuse@ultahost.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।