att[.]qncuu[.]icu
att.qncuu.icu — Контент недоступен. Олицетворение бренда: Genericcloudflare. Сводка доказательств: VirusTotal 14/91 (ADMINUSLabs, BitDefender, CRDF, Chong Lua Dao, CyRadar); URLScan malicious verdict; PhishDestroy score 92/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This report provides an analysis of the domain att.qncuu.icu, which has been flagged as a phishing domain. The domain was created on February 21, 2026, and has been taken offline as of the report date, July 23, 2026. The domain has a Gridinsoft trust score of 0/100, indicating a high level of distrust. It appears on one security blocklist and is blocked by PhishDestroy.
The domain resolves to the IP address 188.114.97.3, which is located in the United States and is part of the AS13335 Cloudflare, Inc. network. The SSL certificate associated with the domain is WE1. Seventeen out of 95 security vendors on VirusTotal have flagged this domain, suggesting a potential threat. The exact content of the website has not been analyzed, and the specific target or type of phishing is not known.
Given the elevated risk level and the presence of security vendor detections, defenders should treat this domain with caution and ensure it is blocked at the network level to prevent any potential access by users. The offline status of the domain is a positive sign, but residual risk may still exist if the domain is reactivated or if similar domains are used by the same threat actors. Regular monitoring and updating of blocklists are recommended to stay ahead of potential re-emergence of this threat.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ЗОНА SHORTDOT · ПУБЛИЧНЫЕ ДОКАЗАТЕЛЬСТВА
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание