shopee-939[.]blogspot[.]com
“SHOPEE”
shopee-939.blogspot.com — Останній відомий активний (HTTP 200). Уособлення бренду: ShopeePay; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 18/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 5 alerts; PhishDestroy score 100/100. Реєстратор: Google Blogger.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain shopee-939.blogspot.com has been identified as a generic phishing site, specifically engaging in brand impersonation of Shopee. As of the latest assessment, this domain is currently offline. The site was designed to deceive users by mimicking the legitimate Shopee brand, potentially to harvest sensitive information or credentials.
Upon investigation, this domain was flagged by 18 out of 95 security vendors on VirusTotal, indicating a significant risk level. The domain was registered through Google Blogger and resolves to the IP address 142.251.14.132, located in the United States under Google LLC's infrastructure. The domain creation date is listed as May 06, 2026, which is notably in the future, suggesting possible data entry errors or time zone discrepancies. It has been included in one known security blocklist and utilizes an SSL certificate issued by Google Trust Services / WE2, which may lend a false sense of security to unsuspecting visitors.
Currently, the domain remains offline, mitigating its immediate threat. However, it is crucial for users to remain vigilant against similar phishing attempts. Users are advised to verify URLs before entering personal information and to use security solutions that can block known phishing domains. Organizations should consider implementing domain monitoring tools to detect and respond to such threats promptly. Continued awareness and education about phishing tactics are vital in reducing exposure to such risks.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | www.youtube.com/s/player/cb017549/player_embed_es6_tce.vflset/en_us/base.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | www.youtube.com/s/player/8fb635c2/player_embed_es6_tcc.vflset/en_us/base.js |
audit | Hunting_JS_WebAssembly |
| Cloudflare DNS | shopee-939.blogspot.com |
malicious | Sinkholed |
| OpenDNS | shopee-939.blogspot.com |
phishing | Phishing Block |
| DNS4EU | shopee-939.blogspot.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога