hjgfhg[.]weeblysite[.]com
“Um momento…”
hjgfhg.weeblysite.com — Контент недоступний. Зведення доказів: VirusTotal 14/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); PhishDestroy score 92/100. Реєстратор: Safenames.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of hjgfhg.weeblysite.com shows the domain is currently offline but retains a record of malicious activity. The site was registered on December 19, 2012 through Safenames Ltd and is hosted on Amazon Web Services infrastructure with Cloudflare front‑end services. DNS resolution points to IP address 74.115.51.55, which belongs to AS27647, identified as Weebly, Inc. in the United States. The SSL certificate presented by the server is issued by Google Trust Services under the WE1 root, indicating a standard Google‑issued certificate rather than a self‑signed or fraudulent chain. HTTP probing returned a 404 status code, and the only visible page title is the Portuguese phrase "Um momento…", providing no clear indication of the intended victim lure.
VirusTotal has recorded 14 detections out of 95 scanned engines, confirming that multiple security products classify the domain as malicious. The domain appears on a single public blocklist and is explicitly listed by PhishDestroy, reinforcing its identification as a phishing vector. No additional threat intelligence feeds such as OTX or Safe Browsing URLs are referenced in the supplied data.
Defenders should continue to block the domain at perimeter controls, DNS sinks, and proxy layers, leveraging the known IP address and identified nameservers (ns-1375.awsdns-43.org, ns-1854.awsdns-39.co.uk, ns-510.awsdns-63.com, ns-522.awsdns). Monitoring for new resolution records or changes to the SSL certificate is advisable, as the infrastructure could be reactivated under a different subdomain. Given the limited visibility beyond the 404 response, threat hunters should treat any traffic to the domain as malicious and correlate it with credential‑theft patterns or user‑reported phishing incidents. The combination of multi‑vendor detections, blocklist inclusion, and the presence of a generic phishing page title justifies maintaining an elevated risk posture until the domain is fully retired.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: weeblysite.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain weeblysite.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 2 identified
Cloud computing platform offering compute, storage, and networking services.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога