cs2more[.]sbs
cs2more.sbs 피싱 및 보안 점검
“WO Archer Ltd - Trade CS:GO Skins”
cs2more.sbs — 콘텐츠를 사용할 수 없음 (HTTP 502). 브랜드 사칭: Cs2; 사기 유형: Impersonation. 증거 요약: VT 3/95 (alphaMountain.ai, Seclookup, Webroot); URLScan no malicious verdict; GSB no flag; BL 0; PD 71/100. 등록기관: Web Commerce Communica….
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Analysis of the domain cs2more.sbs, observed on 22 July 2026, indicates a brand‑impersonation campaign targeting the CS2 community. The domain was registered through Web Commerce Communications Limited and its creation date is 22 June 2025. DNS resolution points to the IPv4 address 88.151.192.141, which geolocates to Ukraine. No TLS certificate is presented, meaning the site operates without HTTPS protection.
The page title returned from the live host reads "WO Archer Ltd - Trade CS:GO Skins", confirming that the content is oriented toward CS:GO skin trading and that the brand name "cs2" is being abused in the site’s branding. VirusTotal records show three of ninety‑five scanning engines flag the domain, and the site appears on a single external security blocklist. Gridinsoft assigns a trust score of zero out of one hundred, reflecting a high confidence in malicious intent. The domain has been taken offline and is listed as blocked by the PhishDestroy service.
The available evidence confirms the use of the domain for brand‑impersonation, but the exact payload, credential‑harvesting mechanisms, or additional infrastructure remain unknown because the site is no longer reachable. Defenders should update URL filtering and domain‑blocking policies to include cs2more.sbs, monitor DNS queries for the associated IP address, and consider the Ukrainian hosting location when correlating traffic anomalies. Continuous re‑evaluation is advised in case the domain is re‑registered or the underlying infrastructure is reused in future campaigns.
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
SHORTDOT 영역 · 공개 증거
.sbs
악용을 위해 만들고, 보호라는 이름으로 되팝니다.
악용을 위해 만들고, 보호라는 이름으로 되팝니다.
당사의 증거 아카이브는 ShortDot의 7개 영역에 등록된 모든 도메인을 추적합니다. 레지스트리의 연간 도매 매출을 약 1,260만 달러로 추산하며, 현재까지 검증된 합법적 사업체는 단 한 곳도 찾지 못했습니다. 당사의 평가: 이 영역들은 거의 전적으로 일회용 악용 인프라로 기능하는 한편, 같은 상업 생태계의 기업들은 그 결과 생긴 쓰레기로부터 브랜드를 보호한다며 서비스를 판매합니다. ShortDot은 매출을 얻고, 인터넷은 쓰레기장을 떠안습니다.
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
ICANN은 돈을 받았다. 책임은 끝내 오지 않았다.
이 gTLD에서 위 등록기관은 ICANN과의 계약에 따라 운영됩니다. ICANN은 등록, 갱신 및 이전과 연계된 연간 수수료, 변동 수수료 및 거래 기반 수수료를 징수합니다.
인증: 수익화 완료. 책임: 나중에 다시 확인하십시오.
그러고 나면 마법이 시작됩니다. ICANN은 RAA §3.18을 작성하고, 등록기관은 자기 고객 기반 안의 악용을 스스로 조사하며, 피해자는 증거를 공짜로 제공하는 동안 모든 단계는 다른 누군가가 움직이기만을 기다립니다. 그 덕분에 피해자가 더 안전하다고 느낀다면 훌륭합니다—청구서가 제 몫을 한 셈이니까요.
VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.