ms365-live[.]com
Проверка домена ms365-live.com на фишинг и безопасность
ms365-live.com — Контент недоступен (HTTP 502). Олицетворение бренда: Microsoft; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 23/91 (alphaMountain.ai, AlphaSOC, ArcSight Threat Intelligence, BitDefender, Certego); Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 98/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
ms365-live.com was registered on 14 May 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com. Since its appearance, the domain has been classified as a generic phishing site and is currently listed as active with an elevated risk rating. Threat intelligence sources show that the domain is present on the PhishDestroy blocklist, indicating that at least one reputable anti‑phishing feed has already taken action to block it. A VirusTotal scan returned 23 positive detections out of 91 scanners, confirming that a substantial minority of security engines recognize malicious behavior associated with the domain.
No additional public data on hosting IP addresses, SSL certificate details, HTTP response codes, Safe Browsing status, or page title have been disclosed, leaving the underlying infrastructure largely opaque. The lack of further evidence does not diminish the observed risk; rather, it underscores the need for defensive operators to treat any traffic to ms365-live.com as potentially hostile. Recommended mitigations include adding the domain to deny‑list or URL filtering policies across perimeter and endpoint controls, monitoring DNS queries for look‑ups, and ensuring that email security gateways enforce strict sender authentication to reduce the chance of credential‑harvesting attempts.
Organizations should also capture TLS handshake metadata and HTTP request logs for any connections to the domain to aid future forensics. Correlation with existing phishing campaigns targeting enterprise email accounts may reveal whether the domain is being used to harvest credentials for Microsoft 365 services, given the resemblance of the name to legitimate Microsoft branding. Until further forensic evidence is released, the prudent posture is to block the domain at the network perimeter and educate users about unsolicited login requests that reference Microsoft 365.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание