frouhiboo[.]ru
frouhiboo.ru — 内容不可用. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 18/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 3 alerts; Spamhaus DBL_SPAM; PhishDestroy score 95/100. 注册商: R01-RU.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, frouhiboo.ru, is flagged as an elevated-risk phishing site specializing in fake login credential harvesting. Analysis indicates the infrastructure is designed to mimic legitimate authentication portals, likely targeting users of financial services, email providers, or corporate platforms. The threat type aligns with credential theft campaigns, where victims are tricked into entering sensitive login details on fraudulent pages that closely resemble genuine services. Infrastructure analysis reveals the following technical indicators: the domain was registered on April 07, 2026, through the R01-RU registrar, a common choice for malicious actors operating within Russian cyberspace. It resolves to the IP address 90.156.226.81, hosted by JSC TIMEWEB in Russia, a provider frequently associated with phishing and malware distribution. VirusTotal detection metrics show 18 out of 95 security vendors flagging the domain as malicious, while it appears on at least one security blocklist. The domain's current status is offline, though this does not preclude reactivation or migration to alternative infrastructure. Mitigation against fake login phishing requires a multi-layered approach. Users should verify domain authenticity by inspecting URLs for subtle misspellings or irregular top-level domains before entering credentials. Organizations are advised to implement domain-based message authentication (DMARC), sender policy framework (SPF), and domainKeys identified mail (DKIM) to reduce email spoofing risks. Endpoint protection solutions should be configured to block known malicious IPs and domains, including 90.156.226.81 and frouhiboo.ru. Security teams should monitor for unusual login attempts or credential reuse across corporate systems, as compromised accounts may be exploited for lateral movement or data exfiltration. Regular security awareness training emphasizing phishing techniques and red flags remains critical for reducing human-targeted attack success rates.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | frouhiboo.ru |
phishing | Phishing Block |
| Hagezi Threat Feed | frouhiboo.ru |
malicious | Sinkholed |
| DNS4EU | frouhiboo.ru |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of frouhiboo.ru · checked Apr 7, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。