⚠️
Этот домен был отмечен как вредоносный
Detected by 14 security vendors. Exercise extreme caution — do not enter credentials or personal information. Create a complaint draft from this stored evidence, review it, and submit it yourself to the appropriate authority.
Domain security & threat intelligence

microsoftauthenticator[.]net

Проверка домена microsoftauthenticator.net на фишинг и безопасность

“Microsoft Authenticator Free Download For Android”

Threat verdict Критический 100/100 evidence score
Availability Последний известный активный Последнее сохраненное наблюдение о доступности
Risk signals
Всего обнаружений вирусов: 14/91 Олицетворение бренда: Apple Последний известный активный
14/91 VT OTX: 1 pulse 31.08.2025 Apple Tech Support Scam CDN + more
Краткий обзор отчёта

microsoftauthenticator.net: VirusTotal — 14 срабатываний из 91. Проверьте DNS, SSL, регистратора, блок-листы и данные об угрозах.

Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.

Evidence Summary
Критический
Ref
1583D589
Score
100/100
Mode
Evidence v1

PhishDestroy first recorded microsoftauthenticator.net on Aug 31, 2025. This English evidence brief is rebuilt from the current structured observations stored for the report. The current evidence score, computed from those stored observations, is 100/100.

The latest stored availability state is “Последний известный активный” (HTTP 200) on Aug 2, 2026 at 00:31 UTC. This is a reachability snapshot, not proof of the cause of any outage, restriction, or status change.

VirusTotal returned 14 detections from 91 scanners in the stored check on Jul 26, 2026 at 04:42 UTC. The independent blocklist snapshot recorded 0 matches across 10 configured external sources on Aug 2, 2026 at 00:20 UTC. PhishDestroy's own listing is excluded from that count. A zero-match snapshot is not a safety verdict.

Other stored evidence. Google Safe Browsing stored no positive flag on Mar 2, 2026 at 21:25 UTC. This time-bound result is not evidence of safety. AlienVault OTX stored 1 pulse reference on Mar 2, 2026 at 00:52 UTC. OTX pulses are community-intelligence references, not vendor verdicts. The Spamhaus DBL snapshot stored no positive result on Jul 15, 2026 at 00:34 UTC. That result is not evidence of safety. A URLScan capture is stored from Mar 5, 2026 at 23:33 UTC.

Stored context lists registrar GoDaddy.com, LLC, IP address 104.21.112.1, registration date Jan 21, 2025, apparent target Apple. Except for the registration date, these fields do not share a source timestamp in this report and may change.

Treat these as stored, time-bound observations rather than a live safety guarantee. Source verdicts and reachability can change, and zero or missing vendor matches never prove that a domain is safe. Avoid interacting with the domain while uncertainty remains, and use the appeal process if this report is inaccurate.

VirusTotal
VirusTotal
14 det.
OTX AlienVault
URLScan
URLScan
Gridinsoft
72/100
TLS certificate
Expired or unverified -67d
Возраст
1.5 yr
Observed status
Последний известный активный 200
PhishDestroy
DestroyList
Listed
Охват данных VirusTotal 14 / 91 URLQuery checked — no match OTX 1 pulse CF Radar clean URLScan capture stored report URLScan verdict analysis completed DNS-блокировки not checked TLS expired or unverified WHOIS 19 mo old Screenshot external capture Цепочка перенаправлений not probed Gridinsoft 72/100
Сигналы безопасности
GS Gridinsoft Analysis 72 / 100
Hosting SSL Certificate Helpdesk Registration Form Fast Site Young Domain

Pipeline реагирования на угрозы

Discovery
Checks
Reports
Availability
13/15
Упреждающее обнаружение и сбор данных
Угроза устранена
1/1 ✓
Угроза устранена
microsoftauthenticator.net обнаружены и помещены в очередь для полного анализа
31.08.2025
Threat Intelligence Checks
URLScan.io Capture · URLScan Verdict · Cloudflare Radar · Web Archive · VirusTotal · Google Safe Browsing · OTX Threat Intel · Brand Impersonation · Forensic Evidence Collected · Technical Analysis Recorded · VT Detection +1
11/11 ✓
URLScan.io Capture
Stored URLScan report with capture artifacts
05.03.2026
URLScan Verdict
URLScan analysis completed; this web-capture result does not change the page threat verdict · score 0
29.07.2026
Cloudflare Radar
Scanned via Cloudflare Radar — DNS, certificates & network data
Web Archive
Preserved in Wayback Machine — historical evidence archived
VirusTotal
14 / 91 vendors flagged on VirusTotal
26.07.2026
Google Safe Browsing
02.03.2026
OTX Threat Intel
Найдено в 1 OTX pulse on AlienVault OTX
02.03.2026
Brand Impersonation
Impersonation of Apple
Forensic Evidence Collected
Stored evidence from URLScan.io, stored screenshot
05.03.2026
Technical Analysis Recorded
The report contains stored technology or forensic-analysis results
02.08.2026
VT Detection +1
+1 new detection (11 → 12): ADMINUSLabs, Chong Lua Dao
10.03.2026
Notification Records
Complaint Draft Available
PENDING
Complaint Draft Available
No submission is recorded. You can create a draft, review it, and submit it yourself to the appropriate authority.
Публикация и доступность
DestroyList Published · Monitoring Continues
1/2
Опубликовано «DestroyList»
31.08.2025
Monitoring Continues
The domain remains reachable or access-restricted; future checks may update this observation

Статус в публичных блок-листах

Сбор доказательств

Stored Capture
2025-08-31 01:27 UTC
Malicious · 14/91 engines
Forensic screenshot of microsoftauthenticator.net showing the phishing page layout
IP: 104.21.112.1
GoDaddy.com, LLC
557d old
Page Title
Microsoft Authenticator Free Download For Android
Impersonates
Apple Facebook Google Instagram Linkedin Microsoft Telegram Tiktok +3
TLS Certificate
Expired or unverified · Issued by Let's Encrypt / R12

Аналитика доменов

Domainmicrosoftauthenticator.net
URLScan Verdict Analysis completed score 0 report ↗
Telegram IoCs 2 extracted https://t.me/share/url?url=https://… text=Download+Free+Latest+Version+M…
Server / ASN cloudflare · AS13335 CLOUDFLARENET, US
IP Context Cloudflare shared edge origin IP hidden edge-IP reputation is not attributed to this domain
IP Address 104.21.112.1 CDN
GeoUS San Francisco, US
NetworkASAS13335 · AS13335 Cloudflare, Inc.
Origin IP is hidden behind a CDN proxy. Reverse-IP on the edge IP returns unrelated tenants — origin discovery requires passive-DNS or CT cross-reference.
RegistrationСоздано 21.01.2025 Expires 21.01.2026
Elapsed Since First Report 196 days
What we count Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Последний известный активный.
What each report contains Stored outgoing report records may reference evidence available at the time, such as vendor verdicts, registration data, hosting details, classifications, or screenshots. This page does not infer the exact payload delivered, receipt, acknowledgement, or action by a recipient.
Статус HTTP200
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Впервые обнаружено31.08.2025
Nameserversdaniella.ns.cloudflare.comgreg.ns.cloudflare.com
TLS Fingerprintcd7cb67ef018aa113231d7caf5ff4fad81b2ea67…
Favicon Hashfavicon97a16b7a93c56025f4b9f4290199ad61
ICANN OVERSIGHT

Accreditation and RAA context

ICANN получила деньги. Подотчётность так и не появилась.

Для этой gTLD указанный выше регистратор работает по договору с ICANN. ICANN взимает ежегодные, переменные и транзакционные сборы, связанные с регистрациями, продлениями и трансферами.

Аккредитация: монетизирована. Подотчётность: пожалуйста, проверьте позже.

Затем начинается магия: ICANN пишет RAA §3.18, регистратор расследует злоупотребления внутри собственной клиентской базы, а жертвы бесплатно предоставляют доказательства, пока каждый уровень ждёт, что действовать начнёт кто-то другой. Если благодаря этому жертвы чувствуют себя в большей безопасности — отлично: счёт сделал своё дело.

Сатирическая записка о подотчётности Ничего не отправляется автоматически.
Технологии · 3 identified
Nginx
Web servers Reverse proxies

High-performance HTTP server and reverse proxy, known for stability and low resource usage.

J
jsDelivr
CDN

Free public CDN for open-source projects, serving files from npm and GitHub.

HTTP/3
Miscellaneous

Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.

Detected via Cloudflare Radar · Wappalyzer engine
Пожаловаться на этот домен Предоставьте доказательства и помогите защитить других

Анализ VirusTotal

14 / 91 security vendors flagged this domain
View on VT
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
ESET
Forcepoint ThreatSeeker
G-Data
Gridinsoft
Kaspersky
Lionic
Sophos
VIPRE
Webroot

Архивные доказательства

Wayback Machine Snapshot
A historical snapshot is available for evidence review
View Archive
Анализ производительности сайта

Google PageSpeed Insights — mobile performance audit of microsoftauthenticator.net · checked Mar 6, 2026

95
Good
Performance
FCP
1.99s
First Contentful Paint
LCP
2.11s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
4.2s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Доказательства и внешние отчеты

Повлиял ли на вас этот сайт?

Ты не один, и тебе нечего стыдиться. Мошенники — это искушенные преступники, которые злоупотребляют доверием. Сообщение о вашем случае — самое действенное оружие в борьбе с мошенничеством: ваше заявление может уберечь других от того, чтобы стать жертвами, и помочь правоохранительным органам принять меры. Молчание — главное преимущество мошенника. Разбей это.

If you entered account credentials, personal or payment information, or downloaded a file from this domain, take immediate action. Below are resources to help you report the incident and protect yourself.

Europol
Find the official reporting channel for your EU country
National police directory
Остерегайтесь мошенников, предлагающих услуги по восстановлению данных! Criminals may contact victims again while pretending to be investigators, lawyers, or recovery agents. Do not pay upfront fees or share credentials. Узнайте больше о мошенничестве при получении компенсаций →

Сообщите об этом в местные органы власти

Выберите свою страну, чтобы получить официальные контакты по вопросам киберпреступности, or create a complaint draft →

Выберите свою страну...
97-country directory
AI-assisted draft — incident details are processed by the AI provider Review and submit it yourself

About This Report: microsoftauthenticator.net

This report presents the latest stored evidence available to PhishDestroy. Source timestamps are shown where available; availability and vendor verdicts can change after collection.

The site displays a page titled “Microsoft Authenticator Free Download For Android”, which may be designed to impersonate Apple.

microsoftauthenticator.net has been flagged by 14 security vendors as of August 2, 2026.

Если вы считаете, что эта информация неверна, вы можете подать апелляцию. Для получения более подробной информации о нашей методологии посетите наш Страница «Часто задаваемые вопросы».

Проверить любой домен

Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence

Сканировать сейчас

Сообщить о фишинге

Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество

Report

Поток оперативных данных об угрозах

Recent phishing reports and observed availability changes

Monitor

Будьте в курсе событий, берегите себя

Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание

Поток оперативных данных об угрозах Подать жалобу на это объявление
HTML · IFRAME

Вставить этот отчет

Разместите эту информацию об угрозах на своём сайте или в блоге

embed.html
<iframe
  src="https://phishdestroy.io/ru/embed/domain/microsoftauthenticator.net"
  title="PhishDestroy threat report for microsoftauthenticator.net"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Очень искреннее благодарственное письмо

Генератор сатирических черновиков

Получатель
Контекст сборов

Это сатирический черновик. Суммы сборов являются оценочными; мы не утверждаем, что они точно относятся к этому домену.