filezillas[.]com
“FileZilla宿¹ä¸è½½ - å è´¹å¼æºFTP客æ·ç«¯è½¯ä»¶ | Windowsæä»¶ä¼ è¾å·¥å ·é¦é”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
Analysis of filezillas.com shows a high‑risk, active generic phishing infrastructure. The domain was registered on June 8 2026 through Vantage of Convergence (Chengdu) Technology Co., Ltd. DNS resolution points to IP 43.155.165.235, an address hosted by Tencent Cloud Computing in South Korea. The web server is identified as Nginx with HTTP Strict Transport Security and HTTP/3 enabled, and the TLS certificate is issued by Let’s Encrypt (R12). HTTP responses return a 301 redirect; the page title is a garbled string that does not reveal the intended content. The domain appears on three security blocklists and is explicitly blocked by PhishDestroy, MetaMask, and SEAL. Threat intelligence sources report four AlienVault OTX pulses referencing the host, and VirusTotal scans show 16 of 91 security vendors flagging the domain. The evidence points to a deliberately crafted phishing site, likely used to lure victims seeking FileZilla client software. Uncertainties remain regarding the exact payload or credential‑collection mechanisms, as the page content has not been fully analysed. Defenders should add the domain and its IP to deny‑list controls, monitor DNS queries for related look‑alike domains, and ensure endpoint security solutions are updated to recognize the observed indicators. Continuous feed ingestion from blocklists and OTX will aid in early detection of any expanded campaign activity.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Хронологія виявлення
-
VirusTotal
15 → 16
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of filezillas.com · checked Jun 26, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога