telejzkc.com
“Messenger”
www.telejzkc.com is a credential theft site with a VirusTotal flag count of 7/95, posing a high risk to users.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Riepilogo delle prove
The domain www.telejzkc.com has been identified as a high-risk site associated with credential theft, impersonating the Messenger brand. This domain is actively used for malicious activities and has been flagged in various security studies as a threat to users, posing significant risks of data breaches involving user credentials.
Technical indicators show that the domain has a VirusTotal detection score of 7 out of 95 security vendors. It is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED and resolves to the IP address 27.124.47.186. The creation date of this domain is May 18, 2026, indicating it is a sufficiently new entity with an existing SSL certificate issued for Telegram. The domain's status is marked as active, and it remains unblocked by major threat intelligence services, which raises concerns about its use in ongoing phishing operations.
Current analysis suggests that the domain www.telejzkc.com continues to pose a significant risk to users due to its active status and targeting of sensitive user data. Response actions should include monitoring for any reported incidents associated with the domain and increasing awareness about its fraudulent nature among potential targets. As it remains unresolved in key blocklists, users should exercise extreme caution, avoid interactions with the site, and report any encounters to their organizational security teams.
Informazioni sulla sicurezza di rete Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | www.telejzkc.com |
malicious | Sinkholed |
Forensic History & Detection Timeline
-
VirusTotal Detections Update Jun 27, 2026 · 23:04 UTCVirusTotal scanner detections updated from 7 to 7. Added scanner alerts: ADMINUSLabs, BitDefender, CyRadar, ESET, Fortinet, G-Data, alphaMountain.ai.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not observed
- Punteggio di cloaking
- 0/6
- Last cloaking scan
Scanner note: timeout: raw=timeout; http=0; via=http_proxy; error=HTTPConnectionPool(host='89.249.196.47', port=6632): Read timed out. (read timeout=7)
Latest Classified Outcome 2026-09-20 02:35:28 UTC
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo