Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@microsoft.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
accountsecurity[.]us
accountsecurity.us 网络钓鱼与安全检查
“My Website”
accountsecurity.us — 最后已知的活跃状态 (HTTP 200). 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Forcepoint ThreatSeeker); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 96/100. 注册商: Tucows.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain accountsecurity.us has been identified as a credential phishing portal designed to harvest user login credentials through deceptive imitation of legitimate authentication interfaces. Analysis indicates the site operated as a fake login page, likely targeting unsuspecting users by mimicking trusted platforms. As of the latest assessment, the domain has been taken offline, though prior activity remains a significant concern for historical exposure. Infrastructure analysis reveals the domain was registered through Tucows Domains Inc. and resolved to the IP address 40.90.253.12. The domain was created on April 09, 2026, an anomalous future date suggesting potential registration data manipulation. Detection metrics include flags from 12 of 95 security vendors on VirusTotal, a Gridinsoft trust score of 0/100, and presence on three distinct security blocklists. Technologies detected on the site include WordPress, MySQL, PHP, LiteSpeed, and HTTP/3, indicating a structured yet deceptive web infrastructure. The page title 'My Website' further suggests minimal effort to mask its fraudulent intent. Current status confirms the domain has been rendered offline, though residual risk persists for users who may have interacted with the portal prior to its deactivation. Organizations and individuals are advised to monitor for unauthorized access attempts linked to credentials potentially compromised via this domain. Network administrators should update blocklists to include the domain and associated IP address. Users who suspect prior exposure should immediately reset passwords for any accounts accessed during the domain's active period and enable multi-factor authentication where available. Proactive review of authentication logs for anomalous login attempts is recommended to mitigate potential account takeovers.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | accountsecurity.us |
malicious | Sinkholed |
| DNS4EU | accountsecurity.us |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 5 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
High-performance web server compatible with Apache configurations.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of accountsecurity.us · checked Jun 26, 2026
证据与外部报告
PD-20260414-2D002A Recipient: abuse@microsoft.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。