Lompat ke laporan keamanan
⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 15. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@trustname.com. The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
3 months
Reports sent
1
Latest case ID
PD-20260428-0973DF
Current status
HTTP 200 at latest stored check
Keamanan domain dan intelijen ancaman

install334[.]icu

Pemeriksaan phishing dan keamanan install334.icu

“File is ready to download”

Putusan ancaman Kritis 100/100 skor bukti
Ketersediaan Terakhir diketahui aktif Pengamatan keterjangkauan tersimpan terbaru
Sinyal risiko
Deteksi Total Virus: 15/91 Jenis penipuan: Impersonation Terakhir diketahui aktif
15/91 VT URLQuery: 1 detections OTX: 1 ref 28/04/2026 Impersonation 1 Report Sent NL NL
Ringkasan laporan

install334.icu — Terakhir diketahui aktif (HTTP 200). Jenis penipuan: Impersonation. Ringkasan bukti: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Certego, CRDF, CyRadar); URLQuery 1 det.; PhishDestroy score 100/100. Registrar: FewMoreTaps OÜ.

Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.

Ringkasan bukti
KRITIS
Ref
0059CDBE
Skor
100/100

This domain, install334.icu, poses as a file download portal to distribute malicious payloads or harvest user credentials. Visitors encountering pages titled 'File is ready to download' are likely exposed to executable malware, credential theft scripts, or other harmful content disguised as legitimate downloads. The site employs social engineering tactics to trick users into initiating downloads, often under false pretenses such as software updates, document previews, or media files. Analysis indicates the domain was registered on April 28, 2026, through FewMoreTaps OÜ, a registrar frequently associated with phishing infrastructure. VirusTotal records show 6 out of 95 security vendors flagging the domain as malicious, while infrastructure analysis reveals the use of Nginx, Bootstrap, and HTTP/3, alongside a Let's Encrypt SSL certificate. The domain resolves to IP 103.217.252.224 and appears on three security blocklists, including PhishDestroy and Hagezi. Its inclusion in one AlienVault OTX threat intelligence pulse further corroborates its malicious intent. If this domain was visited, immediate action is required. Disconnect the affected device from the network to prevent potential lateral movement or data exfiltration. Scan the system using updated antivirus or endpoint detection tools to identify and remove any downloaded malware. Reset credentials for any accounts accessed during or after the visit, particularly if login details were entered. Monitor financial and communication platforms for unauthorized activity, as phishing sites of this nature often target sensitive information. Report the incident to internal security teams or relevant authorities for further investigation.

VirusTotal
VirusTotal
15 det.
URLQuery
URLQuery
1 det.
OTX references
URLScan
URLScan
Sertifikat TLS
Let's Encrypt
Usia
3 mo
Status terpantau
Terakhir diketahui aktif 200
PhishDestroy
Daftar Hapus
Terdaftar
Reports Sent
1
Cakupan data VirusTotal 15 / 91 URLQuery 1 det. PhishStats tidak diperiksa OTX 1 community reference CF Radar scan completed URLScan capture laporan yang disimpan URLScan verdict Analisis selesai Pemblokiran DNS tidak diperiksa TLS valid certificate, 51d WHOIS 3 mo old Tangkapan layar 2 captures · 2 sources Rantai pengalihan tidak diselidiki
Intelijen Keamanan Jaringan Registrar context
Registrar context Trustname
Stored registration data identifies Trustname / Fewmoretaps OÜ (IANA 4318) as the registrar. PhishDestroy maintains a separate registrar investigation; that material is contextual and is not an independent detection for this domain.
Trustname Investigation

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
14/15

Status Daftar Blokir Publik

Tangkapan tersimpan

Judul Halaman
File is ready to download
Sertifikat TLS
Valid transport encryption · Diterbitkan oleh Let's Encrypt · valid for 51 days

Intelijen Domain

Domain
URLScan Verdict Analisis selesai score 0 report ↗
Server / ASN nginx · AS206264 Amarutu Technology Ltd
Reputasi IP abuse score 0/100 0 reports checked 13/07/2026
Alamat IP 103.217.252.224 NL
LokasiNL Amsterdam, NL
JaringanAS206264 · HostUS Solutions LLC
PendaftaranDibuat 28/04/2026 (102d)
Status HTTP200
Rincian teknisDNS, SAN SSL, cap waktu
Pertama Kali Terdeteksi28/04/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Server namaares.trustname.com
TLS Fingerprint
TLS Observationvalid from 20/03/2026scanned 28/04/2026
Favicon Hash
Case ID
ZONA SHORTDOT · BUKTI PUBLIK .icu

ShortDot zone evidence

The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.

ShortDot SA · Luxembourg 7 zona · bukti seluruh zona diperbarui setiap hari Buka repositori bukti ShortDot
ICANN OVERSIGHT

Akreditasi dan konteks RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Tidak ada yang dikirim secara otomatis.
Teknologi · 5 identified
Bootstrap
UI frameworks

Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.

getbootstrap.com Keyakinan 100%
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org Keyakinan 100%
Liveinternet
Analytics

Analytics / tracking service — collects visitor behavior data for the site owner.

liveinternet.ru Keyakinan 100%
HSTS
Keamanan

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org Keyakinan 100%
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org Keyakinan 100%
Detected via Cloudflare Radar · Wappalyzer engine
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

15 / Vendor keamanan 91 menandai domain ini
View on VT
Last analyzed First positive detection Previous stored snapshot: 6 detections
alphaMountain.ai
BitDefender
Certego
CRDF
CyRadar
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
LevelBlue
Lionic
SOCRadar
Sophos
VIPRE
Webroot
Analisis Performa Situs

Google PageSpeed Insights — mobile performance audit of install334.icu · checked Jun 26, 2026

85
Needs Work
Performance
FCP
0.76s
First Contentful Paint
LCP
2.62s
Largest Contentful Paint
CLS
0.229
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
0.76s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Bukti & Laporan Eksternal

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260428-0973DF Recipient: abuse@trustname.com
Page title stored with report: File is ready to download
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 32.5 KB

Apakah Anda Terpengaruh oleh Situs Ini?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri

Periksa Domain Apa Pun

Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik

Pindai Sekarang

Laporkan Phishing

Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas

Laporan

Pemberitahuan Ancaman Real-Time

Laporan phishing terbaru dan perubahan ketersediaan yang diamati

Pantau

Tetap Terinformasi, Tetap Aman

Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive

Pemberitahuan Ancaman Real-Time Ajukan Banding Terhadap Iklan Ini
HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/install334.icu"
  title="PhishDestroy threat report for install334.icu"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Surat Terima Kasih yang Sangat Tulus

Pembuat draf satir

Penerima
Konteks biaya

Draf satir. Angka biaya merupakan perkiraan; tidak diklaim bahwa angka tersebut secara tepat terkait dengan domain ini.