Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@contabo.de.
The latest stored availability evidence still shows the domain reachable; 10 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
echo[.]product-sid[.]us
“Echo — Ask. Listen. Learn.”
echo.product-sid.us — 未検証. 証拠の概要: VirusTotal 6/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, Kaspersky); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 85/100.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
echo.product-sid.us is a subdomain of product-sid.us. PhishDestroy first observed the hostname on Aug 11, 2026. The captured page title is “Echo — Ask. Listen. Learn.”. Current evidence score: 85/100 (critical).
Positive findings are stored from 4 sources: VirusTotal, MetaMask, SEAL, and Spamhaus DBL. VirusTotal recorded 6 detections among 91 engines: alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, Kaspersky, SOCRadar on Aug 21, 2026 at 06:11 UTC. MetaMask and SEAL listed the hostname in the separate external-blocklist snapshot on Aug 22, 2026 at 06:20 UTC. Spamhaus DBL: DBL_PHISH on Aug 11, 2026 at 14:30 UTC. Non-positive and contextual checks: URLQuery recorded no positive detection on Aug 11, 2026 at 10:46 UTC. Google Safe Browsing returned no flag on Aug 21, 2026 at 06:12 UTC. URLScan completed without a malicious verdict (score 0) on Aug 11, 2026 at 11:08 UTC.
The collector marked the hostname reachable on Aug 20, 2026 at 22:15 UTC, but did not retain the HTTP response code. At collection time, the hostname resolved to 217.216.75.57 on AS141995 (CAPL-AS-AP - Contabo Asia Private Limited, SG). The recorded endpoint location is Singapore, SG. The stored server header is Caddy. DOM analysis on Aug 11, 2026 at 14:22 UTC returned 85/100. The evidence archive retains 4 visual captures from PhishDestroy, URLScan, URLQuery, and Cloudflare Radar. TLS metadata lists Let's Encrypt as the certificate issuer.
The content indicators and 4 positive source findings support the current phishing classification. The stored fields do not identify an impersonated brand or victim interaction.
脅威対応 Pipeline
公開ブロックリスト登録状況
使用技術 · 3 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 信頼度 100%Express is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs.
expressjs.com 信頼度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 信頼度 100%VirusTotalによる分析
アーカイブ済み証拠
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of echo.product-sid.us · checked Aug 11, 2026
証拠および外部報告書
PD-20260811-D729EB Recipient: abuse@contabo.de このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください