보안 보고서로 이동
⚠️
이 도메인은 악성 도메인으로 표시되었습니다.
탐지를 보고하는 보안 엔진: 1. 극도의 주의를 기울이십시오 — 자격 증명이나 개인 정보를 입력하지 마십시오.
도메인 보안 및 위협 인텔리전스

app[.]uxento[.]io

app.uxento.io 피싱 및 보안 점검

“uxento”

위협 평결 심각 86/100 증거 점수
가용성 클로킹됨 · 접근 가능 클로킹 검사를 통해 관찰된 도달성
위험 신호
VirusTotal 탐지: 1/91 마지막으로 알려진 활성
1/91 VT 2026년 2월 26일 Cloaking CDN
보고서 요약

app.uxento.io — 클로킹됨 · 접근 가능 (HTTP 307). 증거 요약: VirusTotal 1/91 (Gridinsoft); cloaking observed; PhishDestroy score 86/100. 등록기관: Porkbun.

원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.

증거 요약
중요
참조
E7CB5188
점수
86/100

app.uxento.io is a subdomain of uxento.io. PhishDestroy first observed the hostname on Feb 26, 2026. The captured page title is “uxento”. Current evidence score: 86/100 (critical).

One source contains a positive finding: VirusTotal. VirusTotal recorded 1 detections among 91 engines: Gridinsoft on Jul 27, 2026 at 02:25 UTC. Non-positive and contextual checks: Gridinsoft assigned a trust score of 8/100 (Suspicious); no observation timestamp was retained. The separate external-blocklist snapshot contained no matches on Aug 8, 2026 at 02:20 UTC. Google Safe Browsing returned no flag on Mar 2, 2026 at 21:04 UTC. URLScan completed without a malicious verdict (score 0) on Jul 29, 2026 at 02:50 UTC.

Cloaking was recorded with HTTP 307 on Aug 7, 2026 at 22:00 UTC. The cloaking probe recorded status split conditional delivery at 1/100 on Aug 7, 2026 at 22:00 UTC: redirect: raw=redirect_307; http=307; via=https_proxy; location=/login; server=Vercel. Registration records for the registrable domain uxento.io list Porkbun LLC as the registrar and Feb 21, 2026 as the creation date. Registration preceded first observation by 5 days. At collection time, the hostname resolved to 216.150.1.129 on AS16509 (AMAZON-02 - Amazon.com, Inc., US). The IP and ASN identify shared Vercel edge infrastructure; the origin server is not established by this address. DOM analysis on Jul 9, 2026 at 02:22 UTC returned 86/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. IoC extraction on Jul 29, 2026 at 02:29 UTC retained 0 format-validated wallet addresses and 1 Telegram indicator. TLS metadata lists Let's Encrypt / R12 as the certificate issuer with validity through Jun 1, 2026; checked Mar 15, 2026 at 08:08 UTC.

Stored content provides classification context, but only one source contains a positive finding. The stored fields do not identify an impersonated brand or victim interaction.

VirusTotal
VirusTotal
1 det.
URLScan
URLScan
Gridinsoft
8/100
TLS 인증서
만료되었거나 검증되지 않음 -68d
연령
6 mo
관측 상태
클로킹됨 · 접근 가능 307
PhishDestroy
DestroyList
등록됨
데이터 적용 범위 VirusTotal 1 / 91 URLQuery 확인되지 않음 PhishStats 확인되지 않음 OTX no community references CF 레이더 scan completed URLScan capture 저장된 보고서 URLScan verdict 분석 완료 DNS 차단 14 확인됨 — 차단 없음 TLS 만료되었거나 검증되지 않음 WHOIS 6 mo old 스크린샷 2 captures · 2 sources 리디렉션 체인 조사되지 않음 Gridinsoft 8/100

위협 대응 Pipeline

발견
Checks
Reports
가용성
10/12

공개 차단 목록 상태

저장된 캡처

도메인 인텔리전스

도메인
URLScan Verdict 분석 완료 score 0 report ↗
Telegram IoCs 1 extracted https://t.me/uxento
서버 / ASN Vercel · AS16509 AMAZON-02 - Amazon.com, Inc., US
IP Context Vercel shared edge origin IP hidden Edge-IP 평판은 이 도메인에 귀속되지 않습니다.
Registrar (base domain) Porkbun US(US)
악용 신고 연락처abuse@porkbun.com
IP 주소 216.150.1.129 CDN
위치US Walnut, US
네트워크AS16509 · Amazon.com, Inc.
원본 IP는 CDN 프록시 뒤에 숨겨져 있습니다. 에지 주소에 대한 역방향 IP 결과에는 관련되지 않은 테넌트가 포함되어 있습니다. 원본을 찾으려면 수동 DNS 또는 인증서 투명성 데이터가 필요합니다.
Registration (base domain)uxento.io · 생성됨 2026년 2월 21일 (167d)
HTTP 상태307 Temporary Redirect
Cloaking Cloaking Detected Status split · score 1/6
redirect: raw=redirect_307; http=307; via=https_proxy; location=/login; server=Vercel
server: Vercel
checked 2026년 8월 8일
기술적 세부 사항DNS, SSL SAN, 타임스탬프
최초 발견2026년 2월 26일
DOM Analysisanalyzed 2026년 7월 9일score 86/100
IoC Extractionscanned 2026년 7월 29일0 wallet · 1 Telegram IoC
네임서버keira.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 2026년 3월 3일scanned 2026년 3월 15일
Favicon Hash
페이지 제목
uxento
TLS 인증서
만료되었거나 검증되지 않음 · 발급자 Let's Encrypt / R12
사용 기술 · 2 identified
Vercel
PaaS CDN

Cloud platform for frontend deployment, optimized for Next.js.

HSTS
보안

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

Detected via Cloudflare Radar · Wappalyzer engine
이 도메인 신고하기 증거를 제출하고 다른 사람들을 보호하는 데 힘을 보태주세요

VirusTotal 분석

1 / 91 보안 공급업체가 이 도메인에 플래그를 지정했습니다.
View on VT
Gridinsoft
사이트 성능 분석

Google PageSpeed Insights — mobile performance audit of app.uxento.io · checked Mar 2, 2026

53
Needs Work
Performance
FCP
4.45s
First Contentful Paint
LCP
13.7s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
306ms
Total Blocking Time
SI
7.13s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

증거 및 외부 보고서

이 사이트로 인해 영향을 받으셨나요?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.

유로폴
EU 국가의 공식 신고 채널 찾기
National police directory
회복 사기꾼들을 조심하세요! 범죄자는 수사관, 변호사, 회복요원인 척 하면서 피해자에게 다시 연락할 수도 있습니다. 선불 비용을 지불하거나 자격 증명을 공유하지 마십시오. 회복 관련 사기에 대해 자세히 알아보기 →

지역 당국에 신고하십시오

공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.

97개국 디렉토리
AI 지원 초안 - 사고 세부정보는 AI 제공업체에서 처리됩니다. 직접 검토하고 제출하세요.

모든 도메인 확인

저장된 차단 목록, WHOIS, DNS 및 공개 스캔 증거를 사용한 위협 분석

지금 스캔하기

피싱 신고

의심스러운 도메인을 당사의 위협 데이터베이스에 신고해 주세요 — 커뮤니티를 보호해 주세요

보고서

실시간 위협 정보

최근 피싱 보고서 및 관찰된 가용성 변경 사항

모니터링

최신 정보를 확인하고, 안전을 지키세요

실시간 위협을 모니터링하거나, 오탐이라고 판단될 경우 이 목록에 이의를 제기하십시오.

실시간 위협 정보 이 목록에 이의 제기하기
HTML · IFRAME

이 보고서 삽입하기

이 위협 정보를 귀하의 웹사이트나 블로그에 공유하세요

embed.html
<iframe
  src="https://phishdestroy.io/ko/embed/domain/app.uxento.io"
  title="PhishDestroy threat report for app.uxento.io"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>