connexion[.]shqs[.]click
“offsh.nl”
Riepilogo delle prove
Analysis of the domain connexion.shqs.click shows that it was registered on 21 November 2025 through NameSilo, LLC. The authoritative name servers are nadia.ns.cloudflare.com and rex.ns.cloudflare.com, indicating the use of Cloudflare’s DNS service. DNS resolution points to the IPv4 address 45.151.91.170, which belongs to AS209101 operated by Vendetta Inc. and is geolocated in Germany. No TLS certificate is presented for the host, meaning HTTPS connections are not available. The page title returned during the last HTTP request is “offsh.nl”, which does not correspond to the domain name and suggests possible content spoofing. Google Safe Browsing rates the site as a social‑engineering threat, and the domain appears on one public blocklist, specifically PhishDestroy.
VirusTotal scans have identified the domain as malicious in nine out of ninety‑five submitted security engines, reinforcing the classification as a generic phishing site. Additional reputation scoring from Gridinsoft assigns a trust score of zero out of one hundred, indicating a lack of confidence in the host. The absence of an SSL certificate means browsers will flag the connection as insecure, which can be leveraged by attackers to lure victims. As of the report date 24 July 2026 the domain is reported offline, but the hosting infrastructure remains observable and could be re‑activated.
At present no additional payload or credential‑harvesting page has been captured, so the exact phishing vector remains unknown. Defenders should continue to block the IP address 45.151.91.170 at perimeter defenses, enforce DNS filtering for the domain, and monitor for any re‑registration or resurrection of the host. Updating web‑gateway and email‑security policies to reject content originating from this domain or its associated IP range will reduce exposure. Ongoing threat‑intel feeds should be consulted for any new detection counts or additional blocklist listings.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Registration: shqs.click
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain shqs.click behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo