connexion[.]shqs[.]click
“offsh.nl”
connexion.shqs.click — コンテンツが利用できません. 証拠の概要: VirusTotal 9/95 (ADMINUSLabs, ChainPatrol, BitDefender, CRDF, CyRadar); Google Safe Browsing flagged; PhishDestroy score 80/100. レジストラ: NameSilo.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
Analysis of the domain connexion.shqs.click shows that it was registered on 21 November 2025 through NameSilo, LLC. The authoritative name servers are nadia.ns.cloudflare.com and rex.ns.cloudflare.com, indicating the use of Cloudflare’s DNS service. DNS resolution points to the IPv4 address 45.151.91.170, which belongs to AS209101 operated by Vendetta Inc. and is geolocated in Germany. No TLS certificate is presented for the host, meaning HTTPS connections are not available. The page title returned during the last HTTP request is “offsh.nl”, which does not correspond to the domain name and suggests possible content spoofing. Google Safe Browsing rates the site as a social‑engineering threat, and the domain appears on one public blocklist, specifically PhishDestroy.
VirusTotal scans have identified the domain as malicious in nine out of ninety‑five submitted security engines, reinforcing the classification as a generic phishing site. Additional reputation scoring from Gridinsoft assigns a trust score of zero out of one hundred, indicating a lack of confidence in the host. The absence of an SSL certificate means browsers will flag the connection as insecure, which can be leveraged by attackers to lure victims. As of the report date 24 July 2026 the domain is reported offline, but the hosting infrastructure remains observable and could be re‑activated.
At present no additional payload or credential‑harvesting page has been captured, so the exact phishing vector remains unknown. Defenders should continue to block the IP address 45.151.91.170 at perimeter defenses, enforce DNS filtering for the domain, and monitor for any re‑registration or resurrection of the host. Updating web‑gateway and email‑security policies to reject content originating from this domain or its associated IP range will reduce exposure. Ongoing threat‑intel feeds should be consulted for any new detection counts or additional blocklist listings.
ネットワークセキュリティインテリジェンス Registrar context
脅威対応 Pipeline
公開ブロックリスト登録状況
保存済みキャプチャ
ドメイン・インテリジェンス
技術的な詳細DNS、SSL SAN、タイムスタンプ
ICANN OVERSIGHT
Registration: shqs.click
認定と RAA の背景
認定と RAA の背景
Registrar accreditation and DNS abuse obligations
For the registrable domain shqs.click behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotalによる分析
証拠および外部報告書
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください