us04live[.]us
Перевірка домену us04live.us на фішинг і безпеку
“us04live.us is registered at Namecheap”
us04live.us — Останній відомий активний (HTTP 302). Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 13/91 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 99/100. Реєстратор: Namecheap.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, us04live.us, is actively engaged in credential theft through impersonation of the United States Postal Service (USPS) shipment tracking services. Analysis indicates the domain is designed to deceive users into entering login credentials, payment details, or personal information under the guise of resolving delivery issues or accessing parcel updates. The infrastructure mimics legitimate USPS communication channels, leveraging urgency and authenticity cues to lower user vigilance, a common tactic in large-scale credential harvesting campaigns. Infrastructure analysis reveals the domain was registered on July 03, 2026, through NAMECHEAP INC, a registrar frequently observed in phishing operations due to its accessibility and bulk registration capabilities. The domain currently resolves to the IP address 162.255.119.15, an address not yet widely flagged in threat intelligence feeds. As of the latest assessment, the domain has received 0 detections out of 95 security engines on VirusTotal, indicating it remains undetected by most automated scanning systems. No entries have been identified on major blocklists, further suggesting the campaign is in an early or evasive phase. Users who have interacted with us04live.us should immediately cease all engagement and assume their credentials or payment information may have been compromised. Affected individuals are advised to reset passwords for any accounts accessed after visiting the domain, enable multi-factor authentication where available, and monitor financial statements for unauthorized transactions. System-level scans using updated security tools are recommended to detect potential secondary payloads or persistence mechanisms. Organizations should consider proactively blocking the domain and its associated IP at the network perimeter to prevent further exposure.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога