username8469[.]invoice-ads-program[.]com
Проверка домена username8469.invoice-ads-program.com на фишинг и безопасность
“Accounts Centre”
username8469.invoice-ads-program.com — Контент недоступен (HTTP 502). Олицетворение бренда: Facebook; Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 25/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 5 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 95/100. Регистратор: Gransy, s.r.o.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy identifies username8469.invoice-ads-program.com as a live generic phishing domain posing an elevated risk to users. This domain employs deceptive tactics to impersonate legitimate invoicing or advertising programs, aiming to harvest sensitive credentials or financial information from unsuspecting victims. The threat is active and leverages social engineering through falsified program interfaces to exploit trust in established brands or services.
This domain was flagged by 12 of 95 VirusTotal security vendors, indicating partial but critical detection across industry tools. It was registered through Gransy, s.r.o., on April 23, 2026, and resolves to IP 162.159.140.98. Despite using a Google Trust Services SSL certificate, which may lend false legitimacy, the domain’s recent creation and low detection rate suggest it is a newly deployed campaign operating outside standard blocklists. The combination of a recent registration date, low vendor detection, and high-risk categorization signals an emerging and evasive threat.
To mitigate exposure, users should avoid interacting with any links or attachments from this domain. Enterprises should block the domain at DNS and firewall levels and inspect outbound traffic for callbacks to 162.159.140.98. Security teams are advised to search internal logs for prior connections to this IP or domain and update threat intelligence feeds with seed fd504d to enhance detection across environments. Always verify unexpected invoices or ads through official channels and enable multi-factor authentication to reduce account takeover risks.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | username8469.invoice-ads-program.com |
malicious | Sinkholed |
| OpenDNS | username8469.invoice-ads-program.com |
phishing | Phishing Block |
| Hagezi Threat Feed | username8469.invoice-ads-program.com |
malicious | Sinkholed |
| DigiCert UltraDNS | username8469.invoice-ads-program.com |
malicious | Sinkholed |
| DNS4EU | username8469.invoice-ads-program.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: invoice-ads-program.com
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain invoice-ads-program.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 6 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100% уверенностиReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% уверенностиNext.js is a React framework for developing single page Javascript applications.
nextjs.org 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of username8469.invoice-ads-program.com · checked Apr 29, 2026
Доказательства и внешние отчеты
PD-20260429-B12450 Recipient: abuse@regtons.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание