xplmkt[.]saudiwba[.]me
“Business Help Center”
xplmkt.saudiwba.me — Контент недоступний. Уособлення бренду: Facebook; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 15/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: GMO Internet.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies the domain xplmkt.saudiwba.me as an active phishing page masquerading as a Business Help Center. This threat is currently under investigation but remains accessible and operational as of the latest assessment. Users are advised to exercise extreme caution when encountering this domain, which explicitly mimics a legitimate business support portal. This domain was flagged by 15 of 95 VirusTotal vendors, indicating a low detection rate despite its malicious intent. It resolves to IP address 103.167.93.127, is registered through GMO Internet, Inc., and was created on March 23, 2026. The domain employs a self-signed SSL certificate labeled as 'localhost,' further obscuring its true nature and lowering trust scores among security platforms. Additionally, no known blocklist entries currently flag this domain, increasing the risk of successful user deception. As of today, xplmkt.saudiwba.me remains active and poses a credible threat to users seeking business assistance online. To mitigate risk, PhishDestroy recommends immediate domain blocking at the network level and user awareness campaigns highlighting the use of non-standard SSL certificates and misspelled or obscure subdomains. Organizations are urged to inspect DNS logs for resolution attempts to 103.167.93.127 and to update threat intelligence feeds accordingly. End users should report any interactions with this domain to their IT security teams or through established phishing reporting channels. Exercise caution and verify the legitimacy of business support websites before entering credentials or sensitive information.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога