MALICIOUS — CRITICAL
Перевірка домену teams-com.live на фішинг і безпеку
teams-com[.]
PhishDestroy identifies teams-com.live as a newly registered domain impersonating Microsoft Teams to harvest user credentials.
- VirusTotal
- 4/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступність
- Останній відомий активний · HTTP 302
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
teams-com.live — Останній відомий активний (HTTP 302). Уособлення бренду: Microsoft; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. Реєстратор: Unstoppable Domains.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
PhishDestroy identifies teams-com.live as a newly registered domain impersonating Microsoft Teams to harvest user credentials. This domain was flagged at the time of creation and exhibits multiple red flags consistent with active credential theft campaigns. Users who encounter this site should avoid entering any Microsoft account details. This domain was registered on May 15, 2026 through Unstoppable Domains Inc, resolving to IP 34.42.100.71 secured by a Let’s Encrypt SSL certificate. At the time of assessment, VirusTotal shows 1 out of 95 detection engines flagging the domain, indicating it remains largely undetected by antivirus engines. The domain has not yet appeared on major blocklists, and domain trust scores are unremarkable due to its recent registration. These attributes are typical of fresh credential theft infrastructure designed to exploit trust in established brands before security platforms catch up. Given the absence of detections and the use of a legitimate-looking Microsoft Teams impersonation, this domain poses a high risk of credential theft for unwary users. The presence of a valid SSL certificate further increases the appearance of legitimacy, making cautious verification essential. Users should block access to teams-com.live at the network level and avoid clicking any links or entering credentials. Organizations should add the domain and IP to firewall and DNS blocklists immediately. If credentials were entered, users must rotate passwords immediately and enable multi-factor authentication on their Microsoft accounts to prevent unauthorized access.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних12 recorded checks
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of teams-com.live · checked May 15, 2026
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.