ecoseed[.]ai
“EcoSeed”
Зведення доказів
This domain, ecoseed.ai, is flagged as a credential theft operation impersonating the EcoSeed brand. Analysis indicates the site was designed to harvest user login credentials, payment details, or other sensitive information under the guise of an environmental or sustainability-focused platform. No direct association with cryptocurrency drainer kits or known phishing frameworks was identified, but the domain’s structure and branding suggest a targeted campaign against users interested in eco-friendly products or services. Infrastructure analysis reveals the following technical indicators: the domain was registered on August 23, 2025, through NameSilo, LLC, and resolves to the IP address 18.245.86.33, hosted on Amazon’s infrastructure (AS16509) in Germany. The SSL certificate is issued by Amazon RSA 2048 M04, a common provider for both legitimate and malicious sites. VirusTotal detection shows 10 out of 95 security vendors flagging the domain as malicious, while it appears on one additional security blocklist. Google Safe Browsing (GSB) status is not explicitly provided, but the domain’s offline status suggests takedown actions may have been initiated. The domain is currently offline, likely due to enforcement actions by hosting providers or registrars following security reports. However, residual risk remains due to the potential reuse of infrastructure or registration details. Users who interacted with the site prior to takedown should assume credential exposure and initiate password resets for any accounts accessed during that period. Organizations should monitor for similar domains registered under the same registrar or resolving to the identified IP range, as threat actors often reuse infrastructure across campaigns. No further interaction with ecoseed.ai is advised.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-1774452050-ecoseed.ai- PDF-файл
- PDF із доказами
Історія повідомлень 1
- Повідомлення № 1 Phishing Abuse Report: ecoseed[.]ai
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
0 → 2
-
VirusTotal
2 → 6
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога