discord[.]quasarsoftware[.]net
“Discord”
Сводка доказательств
Analysis of discord.quasarsoftware.net indicates a brand impersonation campaign targeting Discord users. The domain was registered on February 21, 2026 and is currently marked offline. DNS resolution points to IP address 85.209.70.13, which resides in Russia and is announced by AS21030 Cluster LLC. The hosting infrastructure therefore originates from a Russian network, a factor that may affect response time for takedown actions. An SSL certificate labeled R12 is present, suggesting the use of a standard TLS certificate without further validation of its issuance authority.
VirusTotal scans show that seven of ninety‑three security vendors flagged the domain, demonstrating modest detection across the scanning ecosystem. The domain appears on a single public blocklist and has been explicitly blocked by the PhishDestroy filtering service, reinforcing the view that it is recognized as malicious by at least one security community. The page title returned by the server is "Discord," matching the declared brand target and confirming the intent to masquerade as the official Discord service. The campaign is classified as Social Media Phishing, consistent with the brand impersonation label.
No additional evidence about the page content, phishing kit, or credential capture mechanisms is available, leaving the exact user‑experience details uncertain. Defenders should continue to block the domain and its associated IP address at network perimeter devices, update URL filtering rules, and monitor for any re‑registration attempts. Given the modest vendor detection count, additional sandboxing or heuristic analysis of any future payloads linked to this infrastructure is advisable. Organizations that rely on Discord for internal communications should educate users about unsolicited login requests and enforce multi‑factor authentication to mitigate credential theft risks.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
10 внешних источников под наблюдением Совпадений нет
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание