sspl[.]com[.]auaumail7[.]sspl[.]com[.]aumail7[.]sspl[.]com[.]au
“Index of /”
sspl.com.auaumail7.sspl.com.aumail7.sspl.com.au — Непроверенный. Олицетворение бренда: Google; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 16/91 (AILabs (MONITORAPP), BitDefender, Cluster25, CyRadar, ESET); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 98/100. Регистратор: Web Address Registrati….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of sspl.com.auaumail7.sspl.com.aumail7.sspl.com.au shows multiple indicators of malicious activity targeting the Google brand. The site returned an HTTP 200 response with the page title "Index of /", a generic directory listing that offers no legitimate content. DNS resolution points to the IP address 185.184.154.169, which is registered to Dreamscape Networks Limited (AS38719) in Australia. The domain is registered through Web Address Registration Pty Ltd and uses three Vodien nameservers (ns1.vodien.com, ns2.vodien.com, ns3.vodien.com).
A Let’s Encrypt R12 certificate was observed, indicating the presence of TLS but offering no authentication of the site owner. Google Safe Browsing flags the URL for social engineering, and the domain appears on one security blocklist. VirusTotal recorded 15 detections out of 95 scanned vendors, reinforcing the suspicion of abuse. Additional telemetry includes a Gridinsoft trust score of 0 out of 100 and a block entry from PhishDestroy.
The infrastructure is currently offline, but the historical evidence suggests the domain was used to impersonate Google, likely as part of a credential‑harvesting campaign. Uncertainty remains regarding the exact payload or phishing kit employed, as no page content beyond the directory index has been captured. Defenders should continue to block the domain at network perimeter devices, update URL filtering and threat‑intel feeds with the observed indicators, and monitor the associated IP and nameserver infrastructure for any re‑activation. Incident response teams encountering traffic to this host should treat it as malicious, isolate affected endpoints, and enforce credential resets for any Google accounts potentially exposed.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of sspl.com.auaumail7.sspl.com.aumail7.sspl.com.au · checked Mar 2, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание