toesk[.]com[.]cn
“ToDeskå®ç½ - è¿ç¨æ¡é¢è½¯ä»¶ | å®å ¨ç¨³å®çè¿ç¨æ§å¶è§£å³æ¹æ¡”
toesk.com.cn — Непроверенный. Олицетворение бренда: Binance; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 8/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Google Safe Browsing, Gridinsoft); URLQuery 2 alerts; Spamhaus DBL_PHISH; PhishDestroy score 83/100. Регистратор: 成都垦派科技有限公司.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of www.toesk.com.cn indicates that the domain was registered on 11 July 2026 through 成都垦派科技有限公司 and is currently resolved to the IPv4 address 94.154.43.8. The authoritative name servers are ns1.kenpains.com and ns2.kenpains.com. VirusTotal reports that three of ninety‑one scanned security vendors have flagged the domain, supporting its classification as a generic phishing infrastructure. The domain is listed as active and the risk rating is high. The short registration window and immediate activation are consistent with opportunistic phishing campaigns that aim to exploit fresh domains before detection thresholds increase. No additional intelligence, such as hosting ASN, country, or observed malicious payloads, is presently available. Defenders should consider adding the domain and its IP address to block lists, monitor DNS queries for the associated name servers, and incorporate the detection signatures from the reporting vendors into their detection pipelines. Continuous re‑evaluation is advised, as further activity may emerge.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | www.toesk.com.cn |
malicious | Sinkholed |
| DigiCert UltraDNS | www.toesk.com.cn |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 2 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание