frongivedonrousza[.]duckdns[.]org
“Vérification CAPTCHA”
frongivedonrousza.duckdns.org — Контент недоступний. Уособлення бренду: Orange; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 10/91 (BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 80/100. Реєстратор: DuckDNS.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain frongivedonrousza.duckdns.org is currently identified as an active credential harvesting phishing site. Analysis indicates the infrastructure is designed to impersonate legitimate services, tricking users into submitting sensitive login credentials. The page title, 'Page Redirection,' suggests the use of intermediary redirect mechanisms commonly employed in phishing campaigns to obscure the final malicious destination from initial detection tools. Infrastructure analysis reveals the domain is registered through DuckDNS, a dynamic DNS provider frequently abused for malicious purposes due to its low barrier to entry and ephemeral nature. The domain resolves to the IP address 172.81.60.125, which has been associated with prior phishing activity. As of the latest assessment, the domain is flagged by 5 of 95 security vendors on VirusTotal, indicating moderate detection but persistent risk. The SSL certificate is issued by Let's Encrypt, a legitimate certificate authority often exploited by threat actors to lend credibility to phishing sites. No specific brand impersonation has been confirmed at this time, though the credential harvesting framework suggests targeting of generic login portals. The domain remains active, posing an ongoing threat to users who may encounter it through phishing emails, malicious advertisements, or compromised websites. Organizations and individuals are advised to block the domain and its associated IP address at the network perimeter. Endpoint protection solutions should be updated to include this domain in their blocklists. Users who may have interacted with the site are urged to reset credentials for any accounts accessed during the potential exposure window and enable multi-factor authentication where available. Continuous monitoring of related infrastructure is recommended, as dynamic DNS domains are frequently rotated or repurposed in subsequent campaigns.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of frongivedonrousza.duckdns.org · checked Jul 3, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога