appsnd[.]taxwl[.]cc
“appsnd.taxwl.cc”
appsnd.taxwl.cc — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 13/91 (BitDefender, CRDF, CyRadar, ESET, Forcepoint ThreatSeeker); PhishDestroy score 89/100. 注册商: Dominet (HK).
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain appsnd.taxwl.cc was registered on September 14, 2025 through Dominet (HK) Limited and currently resolves to the IPv4 address 170.106.160.91. Threat intelligence sources have classified the domain as a generic phishing site, and it is listed on a single security blocklist. The PhishDestroy service has actively blocked the domain, indicating that it is being used in ongoing malicious campaigns. VirusTotal analysis shows that 13 out of 91 security vendors flag the domain as malicious, providing additional confirmation of its abusive nature.
No public page title, SSL certificate details, or HTTP response codes have been disclosed, so the exact content served by the site remains unknown. Likewise, Safe Browsing, OTX, and other reputation feeds have not been reported, leaving the broader ecosystem impact uncertain. Defenders should prioritize immediate mitigation by adding appsnd.taxwl.cc and its hosting IP 170.106.160.91 to network blocklists and DNS sinkhole configurations.
Continuous monitoring of the IP address for new associations is advised, as threat actors often reuse infrastructure across campaigns. Given the registrar location in Hong Kong and the relatively recent creation date, the domain may be part of a short‑lived phishing operation, but the presence on multiple vendor blocklists suggests a higher likelihood of active exploitation. Organizations should also review outbound traffic for connections to this host and enforce strict credential‑handling policies to reduce the risk of credential harvest from potential phishing attempts originating from this domain.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。