discord[.]quasarsoftware[.]net
“Discord”
discord.quasarsoftware.net — 内容不可用. 品牌冒充:Discord; 诈骗类型:Social Media Phishing. 证据摘要: VirusTotal 7/93 (ADMINUSLabs, Cluster25, CRDF, CyRadar, Fortinet); PhishDestroy score 71/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of discord.quasarsoftware.net indicates a brand impersonation campaign targeting Discord users. The domain was registered on February 21, 2026 and is currently marked offline. DNS resolution points to IP address 85.209.70.13, which resides in Russia and is announced by AS21030 Cluster LLC. The hosting infrastructure therefore originates from a Russian network, a factor that may affect response time for takedown actions. An SSL certificate labeled R12 is present, suggesting the use of a standard TLS certificate without further validation of its issuance authority.
VirusTotal scans show that seven of ninety‑three security vendors flagged the domain, demonstrating modest detection across the scanning ecosystem. The domain appears on a single public blocklist and has been explicitly blocked by the PhishDestroy filtering service, reinforcing the view that it is recognized as malicious by at least one security community. The page title returned by the server is "Discord," matching the declared brand target and confirming the intent to masquerade as the official Discord service. The campaign is classified as Social Media Phishing, consistent with the brand impersonation label.
No additional evidence about the page content, phishing kit, or credential capture mechanisms is available, leaving the exact user‑experience details uncertain. Defenders should continue to block the domain and its associated IP address at network perimeter devices, update URL filtering rules, and monitor for any re‑registration attempts. Given the modest vendor detection count, additional sandboxing or heuristic analysis of any future payloads linked to this infrastructure is advisable. Organizations that rely on Discord for internal communications should educate users about unsolicited login requests and enforce multi‑factor authentication to mitigate credential theft risks.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。