보안 보고서로 이동
⚠️
이 도메인은 악성 도메인으로 표시되었습니다.
탐지를 보고하는 보안 엔진: 24. 극도의 주의를 기울이십시오 — 자격 증명이나 개인 정보를 입력하지 마십시오.
도메인 보안 및 위협 인텔리전스

user1[.]invoice-ads-program[.]com

user1.invoice-ads-program.com 피싱 및 보안 점검

“Accounts Centre”

위협 평결 심각 95/100 증거 점수
가용성 콘텐츠를 사용할 수 없음 최근 관찰에서는 콘텐츠를 사용할 수 없었습니다.
위험 신호
VirusTotal 탐지: 24/91 Spamhaus DBL: DBL_PHISH 브랜드 사칭: Facebook
24/91 VT URLQuery: 2 detections 2026년 4월 25일 2026년 8월 7일 이후 사용할 수 없음 Facebook 1 Report Sent 74d to unavailable CDN
보고서 요약

user1.invoice-ads-program.com — 콘텐츠를 사용할 수 없음 (HTTP 502). 브랜드 사칭: Facebook. 증거 요약: VirusTotal 24/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 2 det.; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100. 등록기관: Gransy, s.r.o.

원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.

증거 요약
중요
참조
B6DAA3D4
점수
95/100

user1.invoice-ads-program.com is a subdomain of invoice-ads-program.com. PhishDestroy first observed the hostname on Apr 25, 2026. Stored content metadata identifies Facebook as the apparent target. The captured page title is “Accounts Centre”. Current evidence score: 95/100 (critical).

Positive findings are stored from 5 sources: VirusTotal, Spamhaus DBL, DNS security resolvers, URLQuery, and URLScan. VirusTotal recorded 24 detections among 91 engines: ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25, CRDF, CyRadar, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, Kaspersky, LevelBlue, Lionic, MalwareURL, Mimecast, SOCRadar, Sophos, VIPRE, Webroot on Jun 27, 2026 at 02:00 UTC. Spamhaus DBL: DBL_PHISH on Jul 13, 2026 at 18:33 UTC. DNS security checks returned 3 blocking results across 12 tested policies: Control D Adblock, Control D Family, Control D Malware; no observation timestamp was retained. URLQuery recorded 2 detections; no observation timestamp was retained. URLScan returned a malicious verdict with score 100; scan metadata linked the capture to Facebook and assigned phishing as its category on Jul 29, 2026 at 03:07 UTC. Non-positive and contextual checks: The separate external-blocklist snapshot contained no matches on Aug 8, 2026 at 10:20 UTC. Google Safe Browsing returned no flag on Apr 25, 2026 at 13:25 UTC. PhishStats returned no feed match on Apr 25, 2026 at 13:26 UTC.

HTTP 502 was recorded on Aug 7, 2026 at 01:27 UTC; content was unavailable. Registration records for the registrable domain invoice-ads-program.com list Gransy, s.r.o. as the registrar and Apr 23, 2026 as the creation date. Registration preceded first observation by 2 days. At collection time, the hostname resolved to 104.21.39.208 on AS13335 (Cloudflare, Inc.). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. TLS metadata lists Google Trust Services as the certificate issuer with validity through Jul 24, 2026; checked Apr 25, 2026 at 14:00 UTC.

The content indicators and 5 positive source findings support the current Facebook impersonation and phishing classification. The target field identifies Facebook, but the record does not establish whether the page requested credentials, a seed phrase, or a wallet connection.

VirusTotal
VirusTotal
24 det.
URLQuery
URLQuery
2 det.
DNS Security
3/12
URLScan
URLScan
TLS 인증서
Google Trust Services
연령
4 mo
관측 상태
콘텐츠를 사용할 수 없음 502
PhishDestroy
DestroyList
등록됨
Reports Sent
1
데이터 적용 범위 VirusTotal 24 / 91 URLQuery 2 det. PhishStats checked — no match recorded OTX no community references CF 레이더 scan completed URLScan capture 저장된 보고서 URLScan verdict malicious DNS 차단 3/12 TLS valid certificate, 89d WHOIS 4 mo old 스크린샷 2 captures · 2 sources 리디렉션 체인 조사되지 않음
네트워크 보안 인텔리전스
DNS Provider Blocks 3 / 12
Controld Adblock Controld Family Controld Malware

위협 대응 Pipeline

발견
Checks
Reports
가용성
15/15
Sent Report Recorded
Stored sent-report record for registrar Gransy, s.r.o., hosting provider, 1 abuse contact
abuse@regtons.com
2026년 4월 25일

공개 차단 목록 상태

저장된 캡처

페이지 제목
Accounts Centre
TLS 인증서
Valid transport encryption · 발급자 Google Trust Services · valid for 89 days

도메인 인텔리전스

도메인
URLScan Verdict 악성 score 100 Phishing brand: Facebook report ↗
서버 / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Edge-IP 평판은 이 도메인에 귀속되지 않습니다.
Registrar (base domain) Gransy, s.r.o
악용 신고 연락처abuse@regtons.com
IP 주소 104.21.39.208 CDN
위치CA Toronto, CA
네트워크AS13335 · Cloudflare, Inc.
원본 IP는 CDN 프록시 뒤에 숨겨져 있습니다. 에지 주소에 대한 역방향 IP 결과에는 관련되지 않은 테넌트가 포함되어 있습니다. 원본을 찾으려면 수동 DNS 또는 인증서 투명성 데이터가 필요합니다.
Registration (base domain)invoice-ads-program.com · 생성됨 2026년 4월 23일 (107d)
HTTP 상태502 Error
최초 이용 불가까지 걸린 시간 74 days
집계 기준 처음 저장된 악용사례 신고부터 콘텐츠를 사용할 수 없다는 첫 번째 관찰까지의 경과 시간입니다. 이것은 원인을 확립하지 못합니다.
각 보고서에 포함된 내용 저장된 발신 보고서 기록은 공급업체 평가, 등록 데이터, 호스팅 세부 정보, 분류 또는 스크린샷과 같이 당시 사용 가능한 증거를 참조할 수 있습니다. 이 페이지는 전달된 정확한 페이로드, 수신, 확인 또는 수신자의 작업을 추론하지 않습니다.
기술적 세부 사항DNS, SSL SAN, 타임스탬프
최초 발견2026년 4월 25일
IoC Extractionscanned 2026년 8월 1일0 wallet · 0 Telegram IoCs
Submitted URLhttp://user1.invoice-ads-program.com/
네임서버aitana.ns.cloudflare.comterry.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 2026년 4월 25일scanned 2026년 4월 25일
Case ID
ICANN OVERSIGHT Registration: invoice-ads-program.com

인증 및 RAA 상황

Registrar accreditation and DNS abuse obligations

For the registrable domain invoice-ads-program.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft 어떤 내용도 자동으로 전송되지 않습니다.
사용 기술 · 6 identified
Node.js
Programming languages

Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.

nodejs.org 신뢰도 100%
React
JavaScript frameworks

React is an open-source JavaScript library for building user interfaces or UI components.

reactjs.org 신뢰도 100%
Next.js
JavaScript frameworks Web frameworks

Next.js is a React framework for developing single page Javascript applications.

nextjs.org 신뢰도 100%
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com 신뢰도 100%
Webpack
Miscellaneous

Webpack is an open-source JavaScript module bundler.

webpack.js.org 신뢰도 100%
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 신뢰도 100%
Detected via Cloudflare Radar · Wappalyzer engine
이 도메인 신고하기 증거를 제출하고 다른 사람들을 보호하는 데 힘을 보태주세요

VirusTotal 분석

24 / 91 보안 공급업체가 이 도메인에 플래그를 지정했습니다.
View on VT
Last analyzed
ADMINUSLabs
Criminal IP
alphaMountain.ai
BitDefender
Chong Lua Dao
Cluster25
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
카스퍼스키
LevelBlue
Lionic
MalwareURL
Mimecast
SOCRadar
소포스
VIPRE
Webroot
사이트 성능 분석

Google PageSpeed Insights — mobile performance audit of user1.invoice-ads-program.com · checked Apr 25, 2026

75
Needs Work
Performance
FCP
0.9s
First Contentful Paint
LCP
8.63s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
31ms
Total Blocking Time
SI
2.06s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

증거 및 외부 보고서

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260425-C5E883 Recipient: abuse@regtons.com
Page title stored with report: Accounts Centre
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 90.6 KB

이 사이트로 인해 영향을 받으셨나요?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.

유로폴
EU 국가의 공식 신고 채널 찾기
National police directory
회복 사기꾼들을 조심하세요! 범죄자는 수사관, 변호사, 회복요원인 척 하면서 피해자에게 다시 연락할 수도 있습니다. 선불 비용을 지불하거나 자격 증명을 공유하지 마십시오. 회복 관련 사기에 대해 자세히 알아보기 →

지역 당국에 신고하십시오

공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.

97개국 디렉토리
AI 지원 초안 - 사고 세부정보는 AI 제공업체에서 처리됩니다. 직접 검토하고 제출하세요.

모든 도메인 확인

저장된 차단 목록, WHOIS, DNS 및 공개 스캔 증거를 사용한 위협 분석

지금 스캔하기

피싱 신고

의심스러운 도메인을 당사의 위협 데이터베이스에 신고해 주세요 — 커뮤니티를 보호해 주세요

보고서

실시간 위협 정보

최근 피싱 보고서 및 관찰된 가용성 변경 사항

모니터링

최신 정보를 확인하고, 안전을 지키세요

실시간 위협을 모니터링하거나, 오탐이라고 판단될 경우 이 목록에 이의를 제기하십시오.

실시간 위협 정보 이 목록에 이의 제기하기
HTML · IFRAME

이 보고서 삽입하기

이 위협 정보를 귀하의 웹사이트나 블로그에 공유하세요

embed.html
<iframe
  src="https://phishdestroy.io/ko/embed/domain/user1.invoice-ads-program.com"
  title="PhishDestroy threat report for user1.invoice-ads-program.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

매우 진심 어린 감사 편지

풍자적 초안 생성기

수신자
수수료 맥락

풍자적 초안입니다. 수수료 수치는 추정치이며, 이 도메인에 정확히 귀속된다고 주장하지 않습니다.