microslop[.]mom
“Parking Page”
microslop.mom — Неперевірений. Зведення доказів: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, LevelBlue); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 85/100. Реєстратор: Spaceship.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain microslop.mom was identified as a typo-squatting phishing domain designed to impersonate Microsoft. This domain leverages a common misspelling of 'Microsoft' to trick users into believing they are visiting a legitimate Microsoft website, likely to steal login credentials or deploy a crypto drainer. The domain is currently offline, but its registration and hosting details indicate a deliberate attempt to deceive users. The risk level is elevated due to the high-profile brand impersonated and the potential for credential theft.
Technical indicators reveal that the domain was created on May 27, 2026, and registered through Spaceship, Inc. It resolves to IP address 54.149.79.189. VirusTotal reports show that 2 out of 95 security vendors flagged this domain as malicious, and it appears on 3 security blocklists. No SSL certificate was detected, which is consistent with phishing sites that often lack proper encryption. These data points suggest a relatively new but active threat that was quickly identified and taken offline.
Given that the domain is now offline, the immediate risk is reduced. However, users who may have previously visited microslop.mom are advised to change their passwords and enable multi-factor authentication on their Microsoft accounts. PhishDestroy recommends all users verify any unexpected emails or login prompts by navigating directly to the official Microsoft website rather than clicking on links. Staying vigilant against typo-squatting domains like microslop.mom is crucial to avoid phishing attacks.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога