frouhiboo[.]ru
Kanıt özeti
This domain, frouhiboo.ru, is flagged as an elevated-risk phishing site specializing in fake login credential harvesting. Analysis indicates the infrastructure is designed to mimic legitimate authentication portals, likely targeting users of financial services, email providers, or corporate platforms. The threat type aligns with credential theft campaigns, where victims are tricked into entering sensitive login details on fraudulent pages that closely resemble genuine services. Infrastructure analysis reveals the following technical indicators: the domain was registered on April 07, 2026, through the R01-RU registrar, a common choice for malicious actors operating within Russian cyberspace. It resolves to the IP address 90.156.226.81, hosted by JSC TIMEWEB in Russia, a provider frequently associated with phishing and malware distribution. VirusTotal detection metrics show 18 out of 95 security vendors flagging the domain as malicious, while it appears on at least one security blocklist. The domain's current status is offline, though this does not preclude reactivation or migration to alternative infrastructure. Mitigation against fake login phishing requires a multi-layered approach. Users should verify domain authenticity by inspecting URLs for subtle misspellings or irregular top-level domains before entering credentials. Organizations are advised to implement domain-based message authentication (DMARC), sender policy framework (SPF), and domainKeys identified mail (DKIM) to reduce email spoofing risks. Endpoint protection solutions should be configured to block known malicious IPs and domains, including 90.156.226.81 and frouhiboo.ru. Security teams should monitor for unusual login attempts or credential reuse across corporate systems, as compromised accounts may be exploited for lateral movement or data exfiltration. Regular security awareness training emphasizing phishing techniques and red flags remains critical for reducing human-targeted attack success rates.
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | frouhiboo.ru |
phishing | Phishing Block |
| Hagezi Threat Feed | frouhiboo.ru |
malicious | Sinkholed |
| DNS4EU | frouhiboo.ru |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of frouhiboo.ru · checked Apr 7, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin