Перейти до звіту про безпеку
⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 20. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
Безпека домену та аналіз загроз

securewebapps[.]azurewebsites[.]net

“Enter Password”

Загрозливий вердикт Критичний 100/100 оцінка доказів
Доступність Контент недоступний Вміст був недоступний під час останнього спостереження
Виявлення VirusTotal: 20/91 URLQuery threat systems: 2 alerts Уособлення бренду: Microsoft
29.05.2026 Microsoft 1 Report Sent

Зведення доказів

КРИТИЧНИЙ
Evidence score
100/100

This domain, securewebapps.azurewebsites.net, is actively engaged in credential phishing operations designed to harvest user passwords. The page presents a deceptive login interface with the title 'Enter Password,' a common tactic used to trick victims into submitting sensitive authentication details. While no specific brand impersonation or drainer kit signatures have been confirmed, the infrastructure aligns with known phishing patterns leveraging cloud hosting services for rapid deployment and scalability. Infrastructure analysis reveals multiple high-confidence technical indicators. The domain is hosted on Microsoft Azure, resolving to the IP address 20.215.12.4, which is geolocated in Poland under AS8075 (Microsoft Corporation). The SSL certificate is issued by Microsoft Corporation, specifically through the Microsoft TLS G2 RSA CA OCSP 16 chain, which is consistent with legitimate Azure services but exploited here for phishing purposes. Detection engines report a VirusTotal score of 20/95, indicating moderate but growing consensus among security vendors. Google Safe Browsing has flagged the domain as phishing, and it appears on at least one security blocklist. The domain registration details are managed through Microsoft Azure’s platform, though no precise creation date has been disclosed in available intelligence. As of the latest assessment, the phishing site remains active and continues to pose a high risk to users. Despite being blocked by some security filters, the domain persists in resolving and serving malicious content. Response actions should include immediate blacklisting at the network and endpoint levels, particularly for organizations utilizing cloud-based authentication systems. Security teams are advised to monitor for credential submission attempts to this endpoint and implement multi-factor authentication (MFA) as a mitigation measure. Given the domain’s hosting on a reputable cloud provider, takedown efforts may require coordination with the infrastructure provider to revoke access and prevent further abuse.

Знімок надісланих доказів

Надіслано
Записи журналу
1
ID справи
PD-20260529-05C3B3
Заголовок збереженої сторінки
Enter Password
PDF-файл
PDF із доказами
Повний текст доказів
Policy Violations:
Section 1.2 of the AUP: The domain securewebapps.azurewebsites.net is engaged in phishing activities, which are explicitly prohibited under your Acceptable Use Policy.
Section 3.1 of the TOS: The use of this domain for fraudulent purposes constitutes a violation of your Terms of Service, which reserves the right to suspend or terminate services for such actions.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which includes phishing schemes that deceive users into providing sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): This law addresses fraudulent schemes that utilize electronic communications, encompassing phishing as a method of defrauding individuals.
CAN-SPAM Act (15 U.S.C. § 7701): This act regulates commercial email and prohibits deceptive practices, including the use of misleading domain names in phishing attempts.
Regulatory Note: Failure to take immediate action against this domain may result in liability for facilitating illegal activities, as well as potential regulatory scrutiny. Compliance with your AUP and TOS is essential to mitigate risks associated with hosting or registering domains involved in phishing.
VirusTotal
VirusTotal
20 det.
URLQuery
URLQuery
2 threat alerts
DNS Security
3/14
Сертифікат TLS
Microsoft Corporation
Hosting
Microsoft Azure
Вік
2 mo New
Зафіксований статус
Контент недоступний HTTP 502
PhishDestroy
DestroyList
У списку
Reports Sent
1

Data Coverage

VirusTotal 20 / 91 URLQuery 2 threat-system alerts PhishStats не перевірено OTX no community references CF Radar scan completed URLScan capture збережений звіт URLScan verdict malicious Блокування DNS 3/14 TLS valid certificate, 171d WHOIS 2 mo old Знімок екрана 3 captures · 3 sources Ланцюжок перенаправлень не досліджено
Розвіддані з мережевої безпеки
DNS Provider Blocks 3 / 14
Controld Adblock Controld Family Controld Malware
Threat Detection Systems 2 alerts
Detection System Indicator Verdict Alert
YARAhub by abuse.ch securewebapps.azurewebsites.net/ malware Detects file containing Telegram Bot API
DNS4EU securewebapps.azurewebsites.net malicious Sinkholed
Free Hosting Detected Microsoft Azure
This domain is hosted on Microsoft Azure (free hosting platform). Free hosting platforms are commonly used for both legitimate testing/development and malicious purposes. Additional context is needed

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
15/15

Перевірка за блок-листами

10 зовнішніх джерел під наглядом · знімок від 12.08.2026

10 зовнішніх джерел під наглядом Збігів немає

Збережений знімок

Аналітика доменів

Домен
URLScan Verdict Шкідливий score 100 Phishing brand: Microsoft report ↗
Google Safe Browsing Позначено Social engineering checked 29.05.2026
Сервер / ASN nginx/1.28.1 · AS8075 MICROSOFT-CORP-MSN-AS-BLOCK - Microsoft Corporation, US
Репутація IP IP abuse confidence 0/100 0 reports checked 13.07.2026
Провайдер платформи Microsoft Azure
Контакт для скаргabuse@microsoft.com
IP-адреса 20.215.12.4 PL
ГеолокаціяPL Warsaw, PL
МережаAS8075 · Microsoft Corporation
Зворотний пошук IPviewdns.info → rapiddns.io →
Статус HTTP502 Error
Час до першої недоступності 13 days
Що ми враховуємо Час, що минув від першого збереженого звіту про порушення до першого спостереження, що вміст був недоступний. Це не встановлює причину.
Що містить кожен звіт Збережені записи вихідних звітів можуть посилатися на докази, доступні на той час, наприклад вердикти постачальників, реєстраційні дані, деталі хостингу, класифікації або знімки екрана. Ця сторінка не визначає точного доставленого корисного навантаження, квитанції, підтвердження чи дії одержувача.
Технічні подробиціDNS, імена TLS і часові мітки
Вперше виявлено29.05.2026
DOM Analysisanalyzed 29.05.2026DOM analysis score 0/100
Submitted URLhttp://securewebapps.azurewebsites.net/
Відбиток TLS
Спостереження TLSдіє з 03.05.2026перевірено 29.05.2026
Заголовок сторінки
Enter Password
Сертифікат TLS
Valid transport encryption · Виданий Microsoft Corporation · valid for 171 days

Технології

Виявлено 1 технологію з високою впевненістю

Nginx
Cloudflare Radar
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

20 / 91 постачальників безпеки позначили цей домен
View on VT
Last analyzed
Criminal IP
alphaMountain.ai
BitDefender
Ermes
ESET
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Google Safebrowsing
Gridinsoft
«Касперський»
LevelBlue
Lionic
Netcraft
OpenPhish
Sophos
URLQuery
VIPRE
Webroot
Аналіз продуктивності сайту

Google PageSpeed Insights — mobile performance audit of securewebapps.azurewebsites.net · checked May 29, 2026

100
Good
Performance
FCP
0.92s
First Contentful Paint
LCP
1.7s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
1.97s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Чи вплинув на вас цей сайт?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно

Перевірити будь-який домен

Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування

Сканувати зараз

Повідомити про фішинг

Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту

Повідомити

Потокова стрічка про загрози

Останні звіти про фішинг і помічені зміни доступності

Відстежувати

Будьте в курсі подій, дбайте про свою безпеку

Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога

Потокова стрічка про загрози Оскаржити це оголошення

Зовнішні інструменти

HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/securewebapps.azurewebsites.net"
  title="PhishDestroy threat report for securewebapps.azurewebsites.net"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>