toesk[.]com[.]cn
“ToDeskå®ç½ - è¿ç¨æ¡é¢è½¯ä»¶ | å®å ¨ç¨³å®çè¿ç¨æ§å¶è§£å³æ¹æ¡”
toesk.com.cn — Неперевірений. Уособлення бренду: Binance; Тип шахрайства: Impersonation. Зведення доказів: VirusTotal 8/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Google Safe Browsing, Gridinsoft); URLQuery 2 alerts; Spamhaus DBL_PHISH; PhishDestroy score 83/100. Реєстратор: 成都垦派科技有限公司.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of www.toesk.com.cn indicates that the domain was registered on 11 July 2026 through 成都垦派科技有限公司 and is currently resolved to the IPv4 address 94.154.43.8. The authoritative name servers are ns1.kenpains.com and ns2.kenpains.com. VirusTotal reports that three of ninety‑one scanned security vendors have flagged the domain, supporting its classification as a generic phishing infrastructure. The domain is listed as active and the risk rating is high. The short registration window and immediate activation are consistent with opportunistic phishing campaigns that aim to exploit fresh domains before detection thresholds increase. No additional intelligence, such as hosting ASN, country, or observed malicious payloads, is presently available. Defenders should consider adding the domain and its IP address to block lists, monitor DNS queries for the associated name servers, and incorporate the detection signatures from the reporting vendors into their detection pipelines. Continuous re‑evaluation is advised, as further activity may emerge.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | www.toesk.com.cn |
malicious | Sinkholed |
| DigiCert UltraDNS | www.toesk.com.cn |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога