2025supports2025[.]hstn[.]me
“Home”
2025supports2025.hstn.me — 未验证. 品牌冒充:Microsoft; 诈骗类型:Tech Support Scam. 证据摘要: VirusTotal 15/91 (ADMINUSLabs, Criminal IP, BitDefender, Chong Lua Dao, CyRadar); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 100/100. 注册商: Porkbun.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of 2025supports2025.hstn.me indicates an active, high‑risk Microsoft brand‑impersonation campaign hosted on infrastructure that has been publicly flagged. The domain, registered through Porkbun LLC on June 03, 2019, resolves to IP 185.27.134.129, which is assigned to AS34119 Wildcard UK Limited in Great Britain. The server returns HTTP 200 and presents a ZeroSSL ECC Domain Secure Site CA certificate, a common choice for malicious operators seeking encrypted delivery without reputable validation. Nameservers are the Byet.org set (ns1‑ns4.byet.org), further linking the site to shared hosting often abused for phishing. Reputation services rate the domain extremely low (Gridinsoft 0/100, Scamadviser 1/100), and ten of ninety‑five VirusTotal scanners have flagged it as malicious. The site appears on PhishDestroy and PhishingDB blocklists, confirming community detection. The page title observed is "Home," but no additional content analysis is available. The campaign is classified as a Tech Support Scam targeting Microsoft users, though the exact tactics employed on the page remain unverified. Defenders should block traffic to the domain and its resolved IP, monitor DNS queries for the associated Byet.org nameservers, and consider adding the host to internal block lists. Continuous observation is advised to detect any evolution of the payload or redirection behavior.
安全信号
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。