teletxcy[.]com
“Messenger”
Збережене виявлення
Виявлено маскування
- Тип маскування
content_divergence- Оцінка маскування
- 3/6
Зведення доказів
This domain, teletxcy.com, is confirmed as an active phishing site specifically targeting users of the Messenger platform. Analysis indicates it operates as a credential harvesting page, impersonating Meta's messaging service to deceive victims into submitting login credentials. The page title explicitly displays 'Messenger,' reinforcing the social engineering tactic. Current infrastructure and behavioral patterns align with known phishing campaigns targeting social media platforms. Infrastructure analysis reveals the domain was registered on June 21, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED. It resolves to IP address 188.114.97.3 and employs Cloudflare with HTTP/3 support, a common evasion technique to obscure malicious activity. Despite zero detections from 95 VirusTotal vendors, the domain appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL. The Gridinsoft trust score of 1/100 further corroborates its malicious classification. SSL certification is provided by Google Trust Services, which, while legitimate, is frequently abused by threat actors to lend false credibility to phishing sites. As of the latest verification, teletxcy.com remains active and continues to host the phishing page. Organizations and individuals are advised to block the domain at the DNS or network level, particularly in environments where access to Messenger or Meta services is permitted. Endpoint protection systems should be updated to include this domain in their blocklists, and users should be educated to recognize the domain name and associated phishing tactics. Monitoring for connections to 188.114.97.3 or related Cloudflare IP ranges may help identify compromised systems attempting to communicate with this infrastructure.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Збережені докази результату
Результат і атрибуція блокування
- Результат
held- Доступність
unreachable- Причина
registrar_client_hold- Учасник
- NICENIC INTERNATIONAL GROUP CO., LIMITED
- Механізм
client_hold- Упевненість
- 95%
- Перше спостереження
- Останнє спостереження
Оцінка часу недоступності
Час до недоступності: 0 hSHA-256 доказу 1cb2093c2fa3
Хронологія виявлення
-
Доступність
Перше збережене значення: DNS неактивний
f93a11f87e4d -
Доступність
DNS неактивний → Невідомо
6989eb7176d3 -
Доступність
Невідомо → DNS неактивний
a381dad2573d -
Доступність
DNS неактивний → Утримується
200805242d51 -
Доступність
Утримується → DNS неактивний
f52d526b76a1 -
Доступність
DNS неактивний → Невідомо
7ff896cd549a -
Доступність
Невідомо → Утримується
7ee50fe689f5 -
Доступність
Утримується → Невідомо
7ffa0a0c69d7 -
Доступність
Невідомо → DNS неактивний
6dfe9145995c -
Доступність
DNS неактивний → Утримується
95489ad8a2ef
Показати всі (6)
-
Доступність
Утримується → DNS неактивний
641ed81dc4d5 -
Доступність
DNS неактивний → Невідомо
d2adf80dc624 -
Доступність
Невідомо → Утримується
7bd78deeb45f -
Доступність
Утримується → Невідомо
de88630e945c -
Доступність
Невідомо → DNS неактивний
d0b7046e8c2f -
Доступність
DNS неактивний → Утримується
1cb2093c2fa3
Повідомлення спільноти
Повідомили 0 учасників спільноти; уперше помічено 26.06.2026
- Унікальні URL
- 1
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 2 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of teletxcy.com · checked Jun 26, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога