Перейти к отчёту о безопасности
Checked 09.08.2026 Ref 1013964B

MALICIOUS — CRITICAL

azxlml[.]com

11 of 93 security engines flagged the domain; 1 public blocklist listed it (ScamSniffer); the latest stored check returned HTTP 502.

83/100 evidence score · Critical
VirusTotal
11/93
Blocklists
1 · ScamSniffer
Доступность
Контент недоступен · HTTP 502
Report / Add Evidence Appeal this listing
2026-02-24 01:18 UTCКонтент недоступен · HTTP 502

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Этот домен был отмечен как вредоносный
Механизмы безопасности сообщают об обнаружении: 11. Публичные черные списки, сообщающие о совпадении: 1. Будьте предельно осторожны — не вводите учетные данные или личную информацию.
Jump to section
Краткий обзор отчёта

azxlml.com — Контент недоступен (HTTP 502). Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 11/93 (alphaMountain.ai, CyRadar, Ermes, Emsisoft, Fortinet); 1 external blocklist match (ScamSniffer); CF Radar malicious; PhishDestroy score 83/100. Регистратор: Gname.

Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.

Evidence Digest

Ref 1013964B

azxlml.com is classified critical with an evidence score of 83/100. 11 of 93 security engines flagged the domain; 1 public blocklist listed it (ScamSniffer). Registered 22 Dec 2025 via Gname.com Pte. Ltd., hosted on 104.26.12.42 (CLOUDFLARENET, US, US). The latest stored check on 9 Aug 2026 returned HTTP 502 and includes a capture.

Stored generated summary (templated)cerebras · 25.07.2026

Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.

The domain azxlml.com was registered on December 22, 2025 through Gname.com Pte. Ltd. and resolves to the IP address 104.26.12.42, which belongs to AS13335 Cloudflare, Inc. in the United States. The site presents the page title "share-svr.com | 522: Connection timed out" and serves content over HTTPS using a Let’s Encrypt R12 certificate, indicating that TLS is active but the backend service is currently unresponsive. Infrastructure fingerprints show the web server runs Nginx and loads jQuery and Popper libraries, while HTTP Strict Transport Security (HSTS) is enabled, suggesting an attempt to enforce secure communications.

VirusTotal analysis reports that 11 of 93 scanning engines flagged the domain, and Gridinsoft assigns a trust score of zero out of one hundred, reflecting a high confidence of malicious intent. AlienVault’s Open Threat Exchange lists the domain in one threat‑intel pulse, and two independent blocklists—PhishDestroy and ScamSniffer—have added azxlml.com to their repositories, reinforcing its classification as a malicious resource. The domain is currently taken offline, but historical evidence points to a crypto‑related scam campaign, as indicated by the explicit scam type designation.

Defenders should continue to block traffic to the resolved IP, monitor for any re‑use of the host infrastructure, and ensure that any client‑side redirects or scripts referencing azxlml.com are quarantined. Because the site is not reachable, active probing cannot yield additional artifacts; however, the combination of low trust scores, multiple vendor detections, and blocklist listings provides sufficient justification to treat azxlml.com as a high‑risk crypto scam indicator.

VirusTotal
VirusTotal
11 det.
OTX references
DNS Security
2/14
CF Radar
Вредоносный
Сертификат TLS
R12
Возраст
8 mo
Зафиксированный статус
Контент недоступен 502
PhishDestroy
DestroyList
В списке
Охват данных12 recorded checks
VirusTotal 11 / 93 URLQuery отчет сохранен — ожидается подробный вердикт PhishStats не проверено OTX 1 community reference CF Radar provider verdict: malicious URLScan capture сохраненный отчет URLScan verdict Анализ завершён DNS-блокировки 2/14 TLS valid certificate, 42d WHOIS 8 mo old Снимок экрана 2 captures · 2 sources Цепочка перенаправлений не исследовано
Данные сетевой безопасности
DNS Provider Blocks 2 / 14
Cloudflare Family Cloudflare Security
CF Cloudflare Radar Verdict Вредоносный
Phishing

Процесс реагирования на угрозы

Открытие
Checks
Reports
Доступность
16/17

Статус в публичных блок-листах

Сохранённый снимок

Заголовок страницы
share-svr.com | 522: Connection timed out
Сертификат TLS
Valid transport encryption · Выдан R12 · valid for 42 days

Аналитика доменов

Домен
URLScan Verdict Анализ завершён score 0 report ↗
Сервер / ASN cloudflare · AS13335 CLOUDFLARENET, US
IP Context Cloudflare shared edge origin IP hidden Репутация Edge-IP не связана с этим доменом.
Регистратор Gname SG(SG)
Контакт для жалобcomplaint@gname.com
IP-адрес 104.26.12.42 CDN
ГеолокацияUS San Francisco, US
СетьAS13335 · Cloudflare, Inc.
Обратный поиск IPviewdns.info → rapiddns.io →
Исходный IP-адрес скрыт за прокси-сервером CDN. Результаты обратного IP-адреса для граничного адреса содержат несвязанных клиентов; для определения источника требуется пассивный DNS или данные прозрачности сертификатов.
РегистрацияСоздано 22.12.2025 (230d) Expires 22.12.2026
Статус HTTP502 Error
Время до первой недоступности 77 days
Что мы учитываем Время, прошедшее с момента первого сохраненного отчета о нарушении до первого наблюдения о недоступности контента. Это не устанавливает причину.
Что содержит каждый отчет Сохраненные записи исходящих отчетов могут ссылаться на доказательства, доступные на данный момент, такие как вердикты поставщиков, регистрационные данные, сведения о хостинге, классификации или снимки экрана. На этой странице не указывается точная доставленная полезная нагрузка, получение, подтверждение или действие получателя.
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Впервые обнаружено29.12.2025
DOM Analysisanalyzed 11.03.2026score 0/100
IoC Extractionscanned 02.08.20260 wallet · 0 Telegram IoCs
Submitted URLhttp://azxlml.com/
Серверы имёнa.share-dns.coma6.share-dns.comb.share-dns.netb6.share-dns.net
TLS Fingerprint
TLS Observationvalid from 12.01.2026scanned 12.03.2026
TLS SAN Domainsfadzvz.commtdsox.compguhrw.comzxliuf.com
ICANN OVERSIGHT

Аккредитация и контекст RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Ничего не отправляется автоматически.
Технологии · 4 identified
Nginx
Web servers Reverse proxies

High-performance HTTP server and reverse proxy, known for stability and low resource usage.

jQuery
JavaScript libraries

Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.

HSTS
Безопасность

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

Popper
Detected via Cloudflare Radar · Wappalyzer engine
Пожаловаться на этот домен Предоставьте доказательства и помогите защитить других

Анализ VirusTotal

11 / Поставщики средств безопасности 93 отметили этот домен
View on VT
Last analyzed
alphaMountain.ai
CyRadar
Ermes
Emsisoft
Fortinet
Gridinsoft
Netcraft
Seclookup
SOCRadar
Sophos
Webroot

Архивные доказательства

Wayback Machine Snapshot
Исторический снимок доступен для проверки доказательств.
View Archive
Анализ производительности сайта

Google PageSpeed Insights — mobile performance audit of azxlml.com · checked Mar 6, 2026

31
Poor
Performance
FCP
6.23s
First Contentful Paint
LCP
9.42s
Largest Contentful Paint
CLS
0.614
Cumulative Layout Shift
TBT
162ms
Total Blocking Time
SI
11.2s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.

Европол
Найдите официальный канал отчетности для вашей страны ЕС
National police directory
Остерегайтесь мошенников, предлагающих услуги по восстановлению данных! Преступники могут снова связаться с жертвами, притворяясь следователями, адвокатами или агентами по восстановлению. Не платите авансовые платежи и не делитесь учетными данными. Узнайте больше о мошенничестве при получении компенсаций →

Сообщите об этом в местные органы власти

Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.

Каталог 97 стран
Черновик по шаблону • помощь AI с формулировками включается только с отдельного согласия. Просмотрите и отправьте его самостоятельно
Вставить этот отчетRead-only HTML widget
HTML · IFRAME

Вставить этот отчет

Разместите эту информацию об угрозах на своём сайте или в блоге

embed.html
<iframe
  src="https://phishdestroy.io/ru/embed/domain/azxlml.com"
  title="PhishDestroy threat report for azxlml.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Очень искреннее благодарственное письмо

Генератор сатирических черновиков

Получатель
Контекст сборов

Это сатирический черновик. Суммы сборов являются оценочными; мы не утверждаем, что они точно относятся к этому домену.