dd1911a6e.scsewlm.cn
“视频 - Media App”
dd1911a6e.scsewlm.cn — 확인되지 않음. 증거 요약: VirusTotal 4/89 (Forcepoint ThreatSeeker, Gridinsoft, LevelBlue, SOCRadar); PhishDestroy score 71/100. 등록기관: 阿里云计算有限公司(万网).
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
증거 요약
dd1911a6e.scsewlm.cn is a subdomain of scsewlm.cn. PhishDestroy first observed the hostname on Sep 9, 2026. The captured page title is “视频 - Media App”. Current evidence score: 71/100 (critical).
One source contains a positive finding: VirusTotal. VirusTotal recorded 4 detections among 89 engines: Forcepoint ThreatSeeker, Gridinsoft, LevelBlue, SOCRadar on Sep 9, 2026 at 14:49 UTC. Non-positive and contextual checks: The separate external-blocklist snapshot contained no matches on Sep 9, 2026 at 14:20 UTC. URLQuery recorded no positive detection; no observation timestamp was retained. Google Safe Browsing returned no flag on Sep 9, 2026 at 14:49 UTC. URLScan completed without a malicious verdict (score 0) on Sep 9, 2026 at 11:08 UTC.
The collector marked the hostname reachable on Sep 9, 2026 at 07:25 UTC, but did not retain the HTTP response code. Registration records for the registrable domain scsewlm.cn list 阿里云计算有限公司(万网) as the registrar and Dec 19, 2025 as the creation date. At collection time, the hostname resolved to 154.51.63.25 on AS135377 (UCLOUD-HK-AS-AP - UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED, HK). The recorded endpoint location is Kai Tak, HK. The stored server header is openresty. DOM analysis on Sep 9, 2026 at 10:22 UTC returned 71/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. TLS metadata lists Let's Encrypt / YR2 as the certificate issuer with validity through Nov 29, 2026; checked Sep 9, 2026 at 10:02 UTC.
Stored content provides classification context, but only one source contains a positive finding. The stored fields do not identify an impersonated brand or victim interaction.
탐지 타임라인
-
VirusTotal
3 → 4 (+1) (Added: SOCRadar)
-
VirusTotal
2 → 3 (+1) (Added: Forcepoint ThreatSeeker)
-
최초 기록
최초 저장값: 접속 가능
위협 대응 Pipeline
공개 차단 목록 상태
제출된 증거 스냅샷
- 전송됨
- 원장 기록
- 1
- 사건 ID
PD-20260909-6D199D
차단 목록 범위
모니터링 중인 외부 피드 11개 · 저장된 스냅샷 2026년 9월 9일
VirusTotal 분석
증거 및 외부 보고서
PD-20260909-6D199D Recipient: abuse@cogentco.com 이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.