iklpads[.]top
“Facebook”
iklpads.top — Контент недоступен. Олицетворение бренда: Facebook; Тип мошенничества: Social Media Phishing. Сводка доказательств: VirusTotal 16/95 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); PhishDestroy score 95/100. Регистратор: NameSilo.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain iklpads.top was registered through NameSilo, LLC on October 28, 2025 and is currently hosted on Cloudflare nameservers becky.ns.cloudflare.com and conrad.ns.cloudflare.com. Infrastructure analysis shows the domain resolves to IP address 23.146.156.47, which belongs to AS152918 Liberally Network LLC and is geolocated in Hong Kong. No TLS certificate is presented, indicating the site operates without HTTPS protection. The page title returned from the HTTP response is "Facebook," directly matching the declared brand target and confirming the impersonation intent.
VirusTotal scans have flagged the domain by 16 of 95 security vendors, and AlienVault OTX lists the domain in 17 separate threat intelligence pulses, demonstrating broad detection across multiple platforms. It appears on a single security blocklist and is actively blocked by PhishDestroy, further evidencing its classification as a social media phishing vector. Gridinsoft assigns a trust score of 0 out of 100, reinforcing the high‑risk assessment. The domain’s current status is offline, which limits immediate user exposure but does not remove the underlying malicious infrastructure.
Uncertainties remain regarding the specific payload or credential harvesting mechanisms, as no detailed page content has been captured beyond the title. Defenders should continue to block resolution of iklpads.top at DNS level, add the domain to internal phishing and URL filtering lists, and monitor the associated IP address for any re‑activation. Ongoing intelligence sharing with threat‑exchange platforms is recommended to capture any future activity tied to this infrastructure.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание