teleblzr[.]sbs
“Messenger”
teleblzr.sbs — 서버 오류 (HTTP 502). 사기 유형: Credential Phishing. 증거 요약: VirusTotal 14/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 2 det.; Spamhaus DBL_SPAM; PhishDestroy score 95/100. 등록기관: NiceNIC.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
This domain, teleblzr.sbs, is actively engaged in credential theft targeting users of the Messenger platform. Analysis of the page title, 'Messenger,' indicates an attempt to impersonate the legitimate messaging service to deceive users into entering their login credentials. The domain is designed to harvest sensitive information, including usernames, passwords, and potentially multi-factor authentication codes, which can lead to unauthorized account access, identity theft, or further malicious activities such as social engineering attacks or financial fraud. Evidence supporting the malicious nature of teleblzr.sbs includes detection by 15 out of 95 security vendors on VirusTotal, categorizing it as a phishing threat. The domain was registered on June 14, 2024, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-risk domains. Infrastructure analysis reveals the domain resolves to the IP address 27.124.47.186, which has been linked to other suspicious activities. Additionally, the domain appears in one threat intelligence pulse on AlienVault OTX, further confirming its association with malicious campaigns. Users who have visited teleblzr.sbs or entered credentials on any page hosted by this domain should take immediate action. First, reset passwords for any accounts accessed or entered on the site, prioritizing Messenger and any accounts where the same credentials may have been reused. Enable multi-factor authentication on all critical accounts to mitigate the risk of unauthorized access. Monitor financial and communication accounts for signs of compromise, such as unauthorized logins or messages sent from the account. If personal or financial information was disclosed, consider reporting the incident to relevant authorities and credit monitoring services. Finally, ensure endpoint security tools are updated to detect and block access to this domain and related infrastructure.
네트워크 보안 인텔리전스 Registrar context
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
SHORTDOT 영역 · 공개 증거
.sbs
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-13 03:24:12 UTC
사용 기술 · 3 identified
Ubuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.
www.ubuntu.com 신뢰도 100%Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 신뢰도 100%Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 신뢰도 100%VirusTotal 분석
증거 및 외부 보고서
PD-20260702-43E2CE Recipient: abuse@rackip.com 이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.