info-mise-a-jour-ca[.]surge[.]sh
“Unavailable”
info-mise-a-jour-ca.surge.sh — Контент недоступен. Сводка доказательств: VirusTotal 15/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. Регистратор: Surge.sh.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain info-mise-a-jour-ca.surge.sh shows that it is currently offline, returning an HTTP 404 status with the page title "Unavailable." The domain resolves to the IP address 138.197.235.123, which is assigned to AS14061 DigitalOcean, LLC and is geolocated in the United States. Nameserver records point to ns1.surge.sh and ns2.surge.sh, indicating that the site was provisioned through the Surge.sh hosting platform. An SSL certificate issued by Sectigo Limited under the Sectivo RSA Domain Validation Secure Server CA is present, confirming that TLS is configured despite the site being inaccessible. Google Safe Browsing classifies the domain as a social engineering threat, and PhishDestroy has listed it on its blocklist.
In addition, the domain appears on a single external security blocklist and has been flagged by 15 of the 95 security vendors that scanned it on VirusTotal, reinforcing the malicious assessment. The registrar information confirms registration through Surge.sh, but no WHOIS creation date is provided. Because the site is offline, no content analysis is possible and the exact phishing payload or targeted brand cannot be verified.
The observable indicators—hosted on a commercial cloud provider, use of a valid SSL certificate, presence on reputable blocklists, and multiple vendor detections—provide sufficient evidence for security teams to treat the domain as a high‑risk phishing vector. Defenders should add the domain to network and email blocklists, monitor DNS queries for the associated IP and nameservers, and consider enforcing TLS inspection to capture any future traffic should the site become active again. Continuous re‑evaluation is advised if the domain returns to service or if additional intelligence emerges.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание