info-mise-a-jour-ca[.]surge[.]sh
“Unavailable”
info-mise-a-jour-ca.surge.sh — Контент недоступний. Зведення доказів: VirusTotal 15/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Surge.sh.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of the domain info-mise-a-jour-ca.surge.sh shows that it is currently offline, returning an HTTP 404 status with the page title "Unavailable." The domain resolves to the IP address 138.197.235.123, which is assigned to AS14061 DigitalOcean, LLC and is geolocated in the United States. Nameserver records point to ns1.surge.sh and ns2.surge.sh, indicating that the site was provisioned through the Surge.sh hosting platform. An SSL certificate issued by Sectigo Limited under the Sectivo RSA Domain Validation Secure Server CA is present, confirming that TLS is configured despite the site being inaccessible. Google Safe Browsing classifies the domain as a social engineering threat, and PhishDestroy has listed it on its blocklist.
In addition, the domain appears on a single external security blocklist and has been flagged by 15 of the 95 security vendors that scanned it on VirusTotal, reinforcing the malicious assessment. The registrar information confirms registration through Surge.sh, but no WHOIS creation date is provided. Because the site is offline, no content analysis is possible and the exact phishing payload or targeted brand cannot be verified.
The observable indicators—hosted on a commercial cloud provider, use of a valid SSL certificate, presence on reputable blocklists, and multiple vendor detections—provide sufficient evidence for security teams to treat the domain as a high‑risk phishing vector. Defenders should add the domain to network and email blocklists, monitor DNS queries for the associated IP and nameservers, and consider enforcing TLS inspection to capture any future traffic should the site become active again. Continuous re‑evaluation is advised if the domain returns to service or if additional intelligence emerges.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога