got[.]eventmax[.]za[.]com
got.eventmax.za.com 网络钓鱼与安全检查
“got.eventmax.za.com”
got.eventmax.za.com — 内容不可用 (HTTP 502). 证据摘要: VT 12/91 (BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data); URLQuery 0; URLScan no malicious verdict; GSB no flag; Spamhaus DBL_PHISH; BL 0; CF Radar malicious; PD 91/100. 注册商: Sav.com.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of got.eventmax.za.com indicates an active phishing domain targeting event-related credentials. The domain was registered on February 21, 2026, through Sav.com, LLC, and currently resolves to IP 43.160.250.121, hosted on AS132203 in Singapore. No SSL certificate is present, increasing the risk of unencrypted credential interception. Nameservers are provided by CentralNic (ns1.centralnic.net through ns4.centralnic.net), a common infrastructure choice for bulk-registered domains.
Detection data shows the domain is flagged by 16 of 95 security vendors on VirusTotal, though the specific phishing kit or targeted brand remains unconfirmed. The page title, 'got.eventmax.za.com,' suggests a focus on event or ticketing services, but no further content analysis is available. The domain appears on at least one security blocklist (PhishDestroy) and holds a Gridinsoft trust score of 0/100, reinforcing its classification as malicious. Defenders should treat this domain as high-risk for credential harvesting.
Recommended actions include blocking the domain and IP at network perimeter controls, monitoring for connections to 43.160.250.121, and alerting users to potential phishing attempts referencing event-related logins. Further investigation into associated infrastructure (e.g., CentralNic nameservers, Tencent-hosted IPs) may reveal additional linked threats. No evidence suggests this domain is benign or misclassified.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。