uioiure[.]top
“Sign in to Xfinity”
Kanıt özeti
The domain uioiure.top is identified as an active credential phishing site designed to harvest sensitive user information, including login credentials, financial details, or personal data. Analysis indicates this domain employs deceptive techniques, such as mimicking legitimate login portals or financial institutions, to trick users into submitting confidential information. The infrastructure is configured to evade initial detection while maintaining persistence, increasing the likelihood of successful exploitation against unsuspecting visitors. Technical evidence confirms the malicious nature of uioiure.top. The domain is registered through NameSilo, LLC, and was created on December 15, 2025, suggesting a recent and potentially short-lived operation typical of phishing campaigns. It resolves to the IP address 104.21.28.35, hosted on AS13335 (Cloudflare, Inc.), a network frequently leveraged to obscure the true origin of malicious infrastructure. VirusTotal reports 7 out of 95 security vendors flagging this domain as malicious, while Google Safe Browsing explicitly classifies it as phishing. Additionally, the domain appears on one security blocklist and is actively blocked by PhishDestroy, further validating its high-risk status. Notably, the absence of an SSL certificate may indicate an attempt to avoid scrutiny or reduce operational costs, though modern browsers may still warn users of insecure connections. Users who have visited uioiure.top or interacted with its content should take immediate remedial actions. First, any credentials entered on the site must be considered compromised and should be changed immediately across all platforms where the same or similar passwords were used. Enable multi-factor authentication (MFA) on critical accounts to mitigate unauthorized access. Monitor financial statements and account activity for signs of fraudulent transactions or unauthorized access. If personal or financial information was submitted, consider reporting the incident to relevant authorities or credit monitoring services. Finally, ensure endpoint security tools are updated and perform a full system scan to detect potential malware or secondary infections that may have been delivered through the phishing site.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260528-A3FF0A- Yakalanan sayfa başlığı
- Sign in to Xfinity
- PDF belgesi
- PDF kanıtı
Hukuki dayanak
Kanıtın tam metni
Acceptable Use Policy (AUP): The domain uioiure.top is engaged in phishing activities, which directly contravenes your AUP prohibiting illegal activities and deception.
Terms of Service (TOS): The continued operation of this domain constitutes a violation of your TOS, which reserves the right to suspend or terminate services for any activities that involve fraud or phishing.
Applicable Laws (US):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: Prohibits unauthorized access to computers and the use of such access to commit fraud.
CAN-SPAM Act - 15 U.S.C. § 7701: Regulates commercial email and prohibits misleading headers and deceptive subject lines, which are often used in phishing schemes.
Wire Fraud - 18 U.S.C. § 1343: Criminalizes schemes to defraud individuals or entities via electronic communications, including phishing attacks.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to liability under applicable laws and could result in regulatory scrutiny. Compliance with your AUP and TOS is essential to mitigate legal risks.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin