hub-snapshot[.]biz
“Google”
hub-snapshot.biz — Неперевірений. Уособлення бренду: Google; Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 14/91 (ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); PhishDestroy score 92/100. Реєстратор: Dynadot.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, hub-snapshot.biz, is flagged for brand impersonation, specifically targeting Google. The domain was registered on November 25, 2025, through Dynadot LLC and is currently active. Defenders should note that the domain resolves to the IP address 2a00:1450:4001:80e::2004 and has been listed on two security blocklists, indicating a high risk of fraudulent activity. The page title is 'Google,' which is a clear indicator that the site is attempting to mislead visitors into believing it is associated with or operated by Google. Analysis reveals that the domain has appeared in 23 threat intelligence pulses on AlienVault OTX, further emphasizing its involvement in malicious activities. Additionally, the Gridinsoft trust score for this domain is 0/100, the lowest possible, suggesting significant distrust and potential threat to users. While 7 out of 95 security vendors on VirusTotal have flagged this domain, the majority have not, which could indicate either a sophisticated evasion technique or a need for further investigation. The SSL certificate is issued by Google Trust Services, a factor that could be used to gain user trust, but the overall context of the domain's activities and security ratings strongly suggests that this certificate may be misused. Defenders should block access to this domain and monitor for any related malicious traffic. Network administrators and security teams should also conduct thorough checks to identify and remove any compromised credentials that may have been harvested from users who visited this site, and educate employees or users on the risks of brand impersonation and the importance of verifying URLs and SSL certificates.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога