credopass[.]online
“OneDrive”
credopass.online — Контент недоступен. Олицетворение бренда: Onedrive; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 15/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); PhishDestroy score 95/100. Регистратор: NameSilo.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain credopass.online, conducted on July 23, 2026, reveals that it has been used for a brand impersonation campaign targeting OneDrive. The domain was registered through NameSilo, LLC on July 07, 2025, and has since been taken offline. Infrastructure analysis reveals that the domain resolved to the IP address 47.253.40.255, which is associated with US-based hosting provider AS45102 Alibaba (US) Technology Co., Ltd. Despite the current offline status, historical data indicates that the domain was flagged by 15 out of 93 security vendors on VirusTotal, suggesting a moderate level of recognition and classification as a potential threat. The SSL certificate for the domain is rated E8, which may indicate a low to moderate level of trust in the certificate authority or the certificate itself.
The domain has also been mentioned in four threat intelligence pulses on AlienVault OTX, further corroborating its involvement in malicious activities. The exact content of the web page is not yet analyzed, but the page title was found to be 'OneDrive,' aligning with the brand impersonation threat type. The domain's current status as 'taken offline' and its appearance on one security blocklist, including being blocked by PhishDestroy, suggest active measures by security platforms to mitigate the risk.
Gridinsoft's trust score for credopass.online is 0/100, indicating a complete lack of trust in the domain. Defenders should remain vigilant and ensure that this domain is included in their threat intelligence feeds and blocklists to prevent any potential residual impact from the brand impersonation campaign. Any previous interactions with this domain should be reviewed for signs of compromise, and users should be educated to recognize and avoid similar scams targeting OneDrive or other well-known brands.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание