930952[.]com
Pemeriksaan phishing dan keamanan 930952.com
“DB视讯·(中国区)官方网站”
930952.com — Terselubung · dapat dijangkau (HTTP 520). Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, ESET); cloaking observed; PhishDestroy score 95/100. Registrar: Spaceship.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain 930952.com has been identified as a generic phishing site targeting users of an academic or question-and-answer portal, likely impersonating a Chinese-language service based on the page title encoding. Analysis indicates the domain is currently offline, though prior activity suggests it was designed to harvest credentials or distribute malicious payloads under the guise of a legitimate educational resource. Infrastructure analysis reveals the domain was registered on April 15, 2026, through Spaceship, Inc., and resolves to the IP address 104.21.50.209, hosted behind Cloudflare, Inc. infrastructure in Canada. The domain appears on one security blocklist and is flagged by 9 of 95 vendors on VirusTotal, indicating broad detection despite its recent creation. The SSL certificate is issued by Google Trust Services (WE1), a common tactic to lend false legitimacy to phishing sites. The page title, encoded as DB视讯·(中国区)官方网站, translates to "DB Question · (China South) Navigation Website," further suggesting an attempt to mimic a regional academic platform. As of the latest assessment, 930952.com has been taken offline, though its infrastructure remains a potential vector for future malicious activity. Organizations are advised to block the domain and its associated IP (104.21.50.209) at the perimeter, monitor for residual DNS queries, and alert users who may have interacted with the site prior to its takedown. Security teams should review logs for connections to the domain or IP, particularly in environments where Chinese-language educational resources are accessed. Given the domain's recent registration and use of Cloudflare, additional related domains may emerge; proactive monitoring of newly registered domains with similar naming patterns is recommended.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of 930952.com · checked Apr 16, 2026
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive