Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@hostpoint.ch.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
download[.]invoice[.]23423423523523[.]goaware2026[.]gosecurity[.]ch
“Sign in to your account”
download.invoice.23423423523523.goaware2026.gosecurity.ch — Gizlenmiş · ulaşılabilir. Marka kimliğine bürünme: Microsoft; Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 10/91 (Criminal IP, alphaMountain.ai, Chong Lua Dao, CyRadar, Forcepoint ThreatSeeker); URLQuery 3 alerts; URLScan malicious verdict; CF Radar malicious; cloaking observed; PhishDestroy score 86/100. Kayıt kuruluşu: Hostpoint.ch.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This report analyzes the domain download.invoice.23423423523523.goaware2026.gosecurity.ch, which is a credential phishing site. The page title, "Sign in to your account", indicates the site was designed to deceive users into entering login credentials. The site poses a threat by harvesting sensitive account information for unauthorized access.
Technical evidence from the provided data shows the domain was flagged by 19 out of 95 VirusTotal vendors. It was detected by blocklists from ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, and ESET. The domain is registered with Hostpoint.ch and resolves to IP address 217.26.53.208, hosted by Myra Security GmbH in Switzerland. The domain risk score is 73.
The site is currently down or offline. Based on the detection rate and blocklist flags, the risk level is high. The domain's structure suggests it is part of a larger phishing campaign targeting invoice-related credentials.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | download.invoice.23423423523523.goaware2026.gosecurity.ch |
phishing | Phishing Block |
| Cloudflare DNS | download.invoice.23423423523523.goaware2026.gosecurity.ch |
malicious | Sinkholed |
| DNS4EU | download.invoice.23423423523523.goaware2026.gosecurity.ch |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 1 identified
Most widely used open-source HTTP server software.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of download.invoice.23423423523523.goaware2026.gosecurity.ch · checked Mar 19, 2026
Kanıtlar ve Dış Raporlar
PD-20260319-3C105C Recipient: abuse@hostpoint.ch Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin