exmo1[.]be
Проверка домена exmo1.be на фишинг и безопасность
exmo1.be — Контент недоступен (HTTP 502). Олицетворение бренда: Instagram. Сводка доказательств: VirusTotal 3/93 (ChainPatrol, alphaMountain.ai, Seclookup); URLQuery 1 alert; PhishDestroy score 65/100. Регистратор: Combell nv.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of exmo1.be, created on February 21, 2026, shows that the domain resolves to the IPv4 address 188.208.37.102, which is hosted in Belgium under ASN 34762 owned by Combell NV. The registrar information confirms that the domain was registered through Combell nv and is served by the name servers ns3.combell.net, ns4.combell.net, and ns1.combell.eu. The site is currently taken offline, but historical data indicate it was actively blocked by the PhishDestroy feed and appears on at least one public security blocklist. VirusTotal scans recorded three positive detections out of ninety‑three submitted security vendors, reinforcing the suspicion of malicious use.
A Gridinsoft trust score of 0 out of 100 further corroborates the low reputation of the host. The HTTPS certificate presented is a Let's Encrypt R12 certificate, which does not mitigate the underlying risk. Web‑technology fingerprinting identified a WordPress stack backed by MySQL and PHP, along with client‑side libraries such as particles.js, jQuery, jQuery Migrate, and a reference to YouTube, all served through an Nginx front end. These components are commonly leveraged in credential‑harvesting pages.
No page title or additional evidence links were captured, leaving the exact content of the site unverified. Defenders should treat exmo1.be as a malicious phishing infrastructure: block the domain and its associated IP at network perimeters, maintain the blocklist entry, and ensure email and web filtering solutions reference the current threat intelligence. Continuous monitoring of the IP address for re‑activation and periodic re‑scanning with VirusTotal or similar services are advised to capture any future changes in the host's behavior.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | exmo1.be |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 9 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Icon font library.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of exmo1.be · checked Mar 2, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание