ca-info-assistance-clientelle[.]surge[.]sh
“Unavailable”
ca-info-assistance-clientelle.surge.sh — 콘텐츠를 사용할 수 없음. 증거 요약: VirusTotal 15/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); Google Safe Browsing flagged; PhishDestroy score 95/100. 등록기관: Surge.sh.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Analysis of ca-info-assistance-clientelle.surge.sh indicates that the domain is currently offline, returning an HTTP 404 status with a page title of “Unavailable.” The site was registered through the free‑hosting provider Surge.sh, using the default nameservers ns1.surge.sh and ns2.surge.sh, and resolves to the IP address 188.166.132.94. The IP is announced by AS14061 DigitalOcean, LLC and geo‑located in the Netherlands. An SSL certificate issued by Sectigo Limited (Sectigo RSA Domain Validation Secure Server CA) is present, confirming that TLS is enabled despite the lack of active content. Google Safe Browsing has flagged the domain for social‑engineering, and the domain appears on one public security blocklist.
PhishDestroy has also listed the domain as blocked. VirusTotal reports that 15 of 95 scanning engines have flagged the domain, reinforcing the suspicion of malicious use. The combination of a free‑hosting registrar, a generic sub‑domain pattern, and multiple security vendor detections aligns with a typical generic phishing infrastructure.
What remains uncertain is the exact phishing payload or lure that was delivered when the site was active; the current 404 page provides no visible content, and no additional forensic artifacts (such as login‑capture forms or redirect chains) have been recovered. Defenders should proactively block the domain and associated IP address at perimeter defenses, monitor for other surge.sh subdomains exhibiting similar naming conventions, and incorporate the SSL fingerprint and DNS records into threat‑intel feeds. Continued observation of the hosting provider’s sub‑domain space is advised, as free‑hosting services are frequently abused for transient phishing campaigns.
위협 대응 Pipeline
공개 차단 목록 상태
VirusTotal 분석
보관된 증거
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.