lg[.]qeymqo2[.]sa[.]com
“Site is created successfully!”
lg.qeymqo2.sa.com — Konten tidak tersedia (HTTP 502). Ringkasan bukti: VirusTotal 10/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Fortinet); Google Safe Browsing flagged; PhishDestroy score 80/100. Registrar: Sav.com.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
On July 24, 2026, the domain lg.qeymqo2.sa.com was identified as a high‑risk generic phishing infrastructure that has been taken offline. The site returned the page title “Site is created successfully!” and did not present an SSL certificate, indicating that all communications were conducted over clear‑text HTTP. VirusTotal records show that 10 of 93 scanned security vendors flagged the domain, reflecting a moderate detection consensus. Gridinsoft assigned a trust score of 0 out of 100, and Google Safe Browsing classifies the URL as a social‑engineering threat.
The domain resolves to the IPv4 address 178.16.53.103, which is registered to AS202412 Omegatech LTD and geolocated to the Netherlands. Hosting evidence points to the registrar Sav.com, LLC, with the domain originally created on June 25, 1998. Authoritative name servers are ns1.centralnic.net through ns4.centralnic.net. The domain appears on a single public blocklist and has been specifically blocked by the PhishDestroy sinkhole.
No SSL certificate was observed, and the lack of encryption further reduces confidence in the site’s legitimacy. While the page title suggests a generic success message, no additional content analysis is available, leaving the exact phishing payload or targeted brand undefined. Defenders should continue to block the IP 178.16.53.103 and the associated name servers at the network perimeter, update URL filtering rules to include lg.qeymqo2.sa.com, and monitor for any re‑registration attempts. Given the high risk rating and the combination of vendor detections, trust‑score zero, and Safe Browsing flag, the domain should be treated as malicious until a formal takedown is confirmed.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive