7665xx[.]com
“Privacy error”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
This domain is flagged as an elevated-risk credential theft operation targeting users through deceptive login interfaces. Analysis indicates the infrastructure is designed to harvest account credentials, likely for financial fraud or unauthorized account access. The domain employs social engineering tactics to mimic legitimate services, increasing the likelihood of user compromise. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain 7665xx.com resolves to IP address 103.143.28.212, hosted in Hong Kong under autonomous system AS135581 (ONL-HK). It was registered through GoDaddy.com, LLC on September 08, 2017, and currently displays a privacy error page, suggesting recent takedown or evasion attempts. Security vendors on VirusTotal flagged the domain at 18/95 detection ratio, while the SSL certificate is issued to a generic entity labeled Default Company Ltd. The domain appears on one security blocklist and is actively blocked by anti-phishing systems. Mitigation requires immediate action to prevent credential exposure. Users who accessed 7665xx.com should invalidate any entered credentials, particularly for financial or email accounts, and enable multi-factor authentication where available. Network administrators should implement DNS-based blocking for the domain and its associated IP address 103.143.28.212. Security teams should monitor for authentication attempts from this infrastructure and review logs for connections to the IP or domain. Given the domain's age and persistent malicious behavior, organizations should treat any residual traffic as a potential compromise indicator.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
VirusTotal
18 → 19
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание