elfcosmetics-australia.com
elfcosmetics-australia.com — 内容不可用. 证据摘要: VirusTotal 11/89 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); Google Safe Browsing flagged; PhishDestroy score 93/100. 注册商: TuringSign.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
证据摘要
PhishDestroy first observed elfcosmetics-australia.com on Aug 28, 2026. Current evidence score: 93/100 (critical).
Positive findings are stored from 2 sources: VirusTotal and Google Safe Browsing. VirusTotal recorded 11 detections among 89 engines: alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker, G-Data, Google Safe Browsing, Gridinsoft, Kaspersky, PhishFort, SOCRadar on Sep 8, 2026 at 18:20 UTC. Google Safe Browsing flagged the domain: Social Engineering on Sep 8, 2026 at 18:21 UTC. Non-positive and contextual checks: AlienVault OTX listed 4 community pulse references (not vendor detections) on Sep 8, 2026 at 18:21 UTC. The separate external-blocklist snapshot contained no matches on Sep 20, 2026 at 14:20 UTC.
No conclusive timestamped HTTP response is stored. Registration records for the domain list TuringSign Inc. d/b/a Cosmotown as the registrar.
Neither a page title nor a landing-page capture is stored. The record contains 2 positive source findings supporting the current phishing classification. The stored fields do not identify an impersonated brand or victim interaction.
网络安全情报
Forensic History & Detection Timeline
-
VirusTotal Detections Update Sep 7, 2026 · 08:25 UTCVirusTotal scanner detections updated from 10 to 11. Added scanner alerts: CyRadar.
-
VirusTotal Detections Update Sep 7, 2026 · 07:51 UTCVirusTotal scanner detections updated from 9 to 10. Added scanner alerts: CRDF.
-
VirusTotal Detections Update Sep 7, 2026 · 04:40 UTCVirusTotal scanner detections updated from 5 to 9. Added scanner alerts: BitDefender, Forcepoint ThreatSeeker, G-Data, Google Safe Browsing.
-
Domain Status Transition Sep 7, 2026 · 03:00 UTCDomain state transitioned from alive to dead.
-
Status Check Sep 7, 2026 · 01:34 UTCTelemetry event observed.
-
Threat First Observed Sep 7, 2026 · 01:33 UTCDomain ingestion complete. Initial state is marked as alive.
威胁响应 Pipeline
公共封禁名单状态
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
Scanner note: dns_error: raw=dns_error; via=local_dns_prefilter
域名情报
技术详情DNS、SSL SAN、时间戳
VirusTotal 分析
社区情报
1 条社区报告
类别PHISHING
The PhishFort Detection System has flagged this as a domain threat, classified as null. Threat detected at 2026-08-28T06:55:07.755Z.
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。