bos786[.]net
bos786.net 网络钓鱼与安全检查
bos786.net — 最后已知的活跃状态 (HTTP 302). 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 4/91 (alphaMountain.ai); PhishDestroy score 76/100. 注册商: NameCheap.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, bos786.net, is flagged as a high-risk phishing endpoint targeting users through a generic phishing kit. Registered on April 24, 2026, through NameCheap, Inc., the domain remains active as of July 12, 2026, with no SSL certificate implemented, increasing exposure to interception risks. Infrastructure analysis reveals the domain resolves to the IP address 162.255.119.228, hosted by a US-based provider under Web-hosting.com, and utilizes nameservers dns1.registrar-servers.com and dns2.registrar-servers.com, a configuration consistent with low-cost, disposable hosting often exploited for malicious campaigns. Analysis indicates the domain appears on one security blocklist and has been included in a single AlienVault OTX threat intelligence pulse, suggesting limited but confirmed detection. Only one out of ninety-five security vendors on VirusTotal currently flags bos786.net, which may reflect either early-stage detection or evasion tactics. The domain returns an HTTP 200 status, indicating an operational web server, though the absence of SSL further suggests a lack of encryption, a common characteristic in phishing infrastructure designed to reduce costs and avoid certificate transparency logs. What remains uncertain is the specific brand or entity being impersonated, as no conclusive evidence links bos786.net to a particular phishing kit or targeted organization. The domain’s recent registration and minimal detection footprint may indicate an emerging threat or a test phase before broader deployment. Defenders should treat this domain as active and high-risk, particularly in environments where user credentials or sensitive data are processed. Network-level blocking is recommended, along with monitoring for connections to 162.255.119.228 and associated nameserver traffic. Given the domain’s persistence and operational status, further investigation into related infrastructure is warranted to identify potential lateral movement or secondary payload delivery.
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。