bafkreidyo526kmmllfzfuubwhk6r4gzcllp6a7qybqzkdwpzm4gf6x2iwy[.]ipfs[.]dweb[.]link
“Outlook Web App”
bafkreidyo526kmmllfzfuubwhk6r4gzcllp6a7qybqzkdwpzm4gf6x2iwy.ipfs.dweb.link — 内容不可用. 品牌冒充:Outlook Web Access; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 15/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. 注册商: CSC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This site was hosted on the domain bafkreidyo526kmmllfzfuubwhk6r4gzcllp6a7qybqzkdwpzm4gf6x2iwy.ipfs.dweb.link. Its page title was "Outlook Web App," and it impersonated the Outlook Web Access brand. The threat posed is impersonation, designed to deceive users into believing they were accessing a legitimate Microsoft Outlook webmail interface, likely to capture login credentials.
Technical evidence from the provided data includes a VirusTotal detection rate of 15 out of 95 vendors, with flags from ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, and CyRadar. The domain was registered with CSC Corporate Domains, Inc. and created on 2026-02-25. It resolved to IP address 209.94.90.3, located in the United States, under AS40680 (Protocol Labs). The site used an SSL certificate issued by Let's Encrypt (E7), and its nameservers were clarissa.ns.cloudflare.com and tate.ns.cloudflare.com. It appeared on one blocklist.
The current status of the site is offline. The risk level is high due to the impersonation of a widely used email service and the high detection rate by security vendors.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
网站配置分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。