att[.]uoksw[.]cc
att.uoksw.cc — 内容不可用. 品牌冒充:Genericcloudflare. 证据摘要: VirusTotal 14/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, Bfore.Ai PreCrime, Cluster25); URLScan malicious verdict; PhishDestroy score 92/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis indicates that the domain att.uoksw.cc is presently taken offline, limiting immediate exposure but preserving evidence of its recent activity. VirusTotal reports that 14 of 95 security vendors have flagged the domain, suggesting a consensus among detection engines that the site was associated with malicious behavior. The domain appears on a single security blocklist and received a Gridinsoft trust score of 0 out of 100, reinforcing the assessment of high risk.
PhishDestroy has explicitly blocked the domain, and the SSL certificate presented (identified as WE1) further aligns with typical phishing infrastructure that often uses self‑signed or low‑trust certificates. The domain was registered on February 21, 2026, and resolves to IP address 188.114.97.3, which is owned by Cloudflare, Inc. (AS13335) and geolocated to the United States. No additional intelligence such as page titles, brand targeting, or payload samples is available, leaving the exact phishing vector and targeted audience uncertain.
Defenders should add att.uoksw.cc to DNS and proxy blocklists, enforce HTTPS inspection to capture any residual traffic, and monitor for new domains that resolve to the same Cloudflare IP range or exhibit similar registration patterns. Continuous correlation with threat‑intel feeds is advised to detect potential reuse of the infrastructure in future campaigns.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。