xxooxoxixoi98xu9xioxuxishkjxkj-5q3lq[.]ondigitalocean[.]app
“Windows/MacOSサポートセンター”
xxooxoxixoi98xu9xioxuxishkjxkj-5q3lq.ondigitalocean.app — Контент недоступен. Олицетворение бренда: Google; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 6/91 (alphaMountain.ai, ESET, Fortinet, Google Safe Browsing, LevelBlue); Google Safe Browsing flagged; PhishDestroy score 88/100. Регистратор: MarkMonitor.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain xxooxoxixoi98xu9xioxuxishkjxkj-5q3lq.ondigitalocean.app shows that it is currently active and classified as an elevated‑risk generic phishing infrastructure. VirusTotal records indicate that six of ninety‑one scanned security vendors have flagged the domain, suggesting a non‑trivial detection rate across independent tools. Google Safe Browsing further corroborates the threat by labeling the URL as a social engineering site, which is consistent with phishing behavior.
The domain is listed on a single security blocklist and has been explicitly blocked by the PhishDestroy mitigation service, confirming that at least one external defensive platform recognizes it as malicious. No additional public intelligence such as ASN, geolocation, SSL certificate details, HTTP response codes, or page title information is presently available, leaving those infrastructure attributes unverified. Defenders should prioritize immediate containment by adding the full hostname to network and DNS blocklists, and ensure that intrusion detection signatures that reference the domain’s pattern are enabled.
Continuous monitoring of outbound DNS queries for the domain is advised, as well as periodic re‑scanning with multi‑vendor services to capture any changes in detection status. Given the elevated risk rating, security teams should also consider tightening email filtering rules for messages that may contain links to the domain, and educate end‑users about the possibility of social‑engineering attempts originating from this URL.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Технологии · 5 identified
Amazon Web Services (AWS) is a comprehensive cloud services platform offering compute power, database storage, content delivery and other functionality.
aws.amazon.com 100% уверенностиAnalytics / tracking service — collects visitor behavior data for the site owner.
www.statcounter.com 100% уверенностиjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание