Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is domainabuse@tucows.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
xssf[.]net
Проверка домена xssf.net на фишинг и безопасность
“Welcome to XSSF! Xtended Security Solutions Forum”
xssf.net — Последний известный активный (HTTP 200). Сводка доказательств: VirusTotal 5/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Fortinet, Gridinsoft); Spamhaus DBL_SPAM; PhishDestroy score 83/100. Регистратор: Tucows.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain xssf.net was a generic phishing site posing no specific brand impersonation or crypto drainer functionality. It presented itself as a security forum under the title 'Welcome to XSSF! Xtended Security Solutions Forum' but was designed to harvest credentials or distribute malicious content. As of the latest verification, xssf.net has been taken offline, reducing immediate risk to users.
Technical indicators confirm xssf.net as a phishing threat. The domain was flagged by 1 of 95 VirusTotal security vendors, including Fortinet, and appeared on 1 security blocklist (PhishDestroy). It was registered through Tucows Domains Inc. on February 21, 2026, and resolved to the IP address 172.67.161.143, hosted by Cloudflare (AS13335) in the US. The SSL certificate was issued by Google Trust Services / WE1. Additional detections include its presence in 1 AlienVault OTX threat intelligence pulse and a Gridinsoft trust score of 0/100. Technologies observed on the site included XenForo, MySQL, PHP, React, jQuery, and Cloudflare services.
Users who interacted with xssf.net should immediately change any credentials entered on the site, particularly if reused across other platforms. Enable two-factor authentication (2FA) on all accounts as an additional security measure. Monitor financial and login activity for signs of fraud. Report the domain to relevant authorities or platforms, such as Google Safe Browsing, local cybercrime units, or the registrar (Tucows Domains Inc.), to aid in further takedown efforts.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 8 identified
Open-source relational database management system.
Server-side scripting language designed for web development.
JavaScript library for building user interfaces with component-based architecture.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of xssf.net · checked Mar 6, 2026
Доказательства и внешние отчеты
PD-20260218-1FC204 Recipient: domainabuse@tucows.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание