MALICIOUS — CRITICAL
Проверка домена olsu.appwrite.network на фишинг и безопасность
olsu[.]
This domain, olsu.appwrite.network, is flagged as a high-risk phishing resource targeting user credentials through a fabricated login interface.
- VirusTotal
- 12/91
- Blocklists
- No stored match
- Доступность
- Доступен · доступ ограничен · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@fastly.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
olsu.appwrite.network — Доступен · доступ ограничен (HTTP 403). Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, ESET); URLQuery 5 alerts; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 92/100. Регистратор: Fastly.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
This domain, olsu.appwrite.network, is flagged as a high-risk phishing resource targeting user credentials through a fabricated login interface. Analysis indicates the page title 'Sign~in to view' is designed to deceive users into submitting authentication details, likely mimicking a legitimate service. The domain was registered on March 11, 2026, and remains active as of July 12, 2026, resolving to the IP address 151.101.131.52. Infrastructure analysis reveals the use of Cloudflare, Varnish, and Fastly, which may obscure the true origin of the malicious activity and complicate takedown efforts. Technical indicators show the domain employs common web technologies such as Bootstrap, jQuery, HSTS, and Google Hosted Libraries, which are consistent with legitimate sites but are frequently leveraged in phishing campaigns to appear credible. The SSL certificate is issued by Certainly, providing encrypted connections that may further mislead users. The domain currently appears on one security blocklist and is detected by 12 out of 95 security vendors on VirusTotal, confirming its malicious classification. However, the specific phishing kit or targeted brand remains unidentified, limiting attribution. Defenders should prioritize blocking this domain at the DNS and web proxy levels to prevent user access. The IP address 151.101.131.52 should be monitored for additional malicious domains, as it may host further phishing resources. Given the domain's recent registration and active status, it is likely part of an ongoing campaign, and security teams should review logs for connections to this domain or IP within the past four months. No evidence suggests this domain is part of a broader malware distribution or command-and-control infrastructure, but continuous monitoring is recommended due to its persistence.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных12 recorded checks
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | olsu.appwrite.network |
malicious | Sinkholed |
| DNS4EU | olsu.appwrite.network |
malicious | Sinkholed |
| DigiCert UltraDNS | olsu.appwrite.network |
malicious | Sinkholed |
| Quad9 DNS | olsu.appwrite.network |
malicious | Sinkholed |
| DigiCert UltraDNS | assets.appwrite.io |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: appwrite.network
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain appwrite.network behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 8 identified
Popular CSS framework for responsive, mobile-first web development.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comFast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of olsu.appwrite.network · checked Jul 12, 2026
Доказательства и внешние отчетыIndependent lookups and source reports
PD-20260311-7EA0AC Recipient: abuse@fastly.com Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.