hypersvvap[.]com
证据摘要
hypersvvap.com was registered on 21 February 2026 through Hello Internet Corp. The domain resolves to the default name servers ns100.webnic.cc and ns101.webnic.cc provided by the WebNIC hosting platform. Within weeks of registration, the zone appeared on two independent phishing blocklists – PhishDestroy and ScamSniffer – and is presently listed as offline. VirusTotal records show that two of ninety‑three scanned security vendors flagged the domain, indicating at least some detection of malicious activity. No public SSL certificate, HTTP response details, or page title have been disclosed, and no additional infrastructure such as IP address or autonomous system information is available in the current intelligence set.
The limited evidence suggests that the domain was used, or intended for use, in a generic phishing campaign, but the exact payload, target brand, or lure technique cannot be confirmed. Defenders should continue to block the domain at perimeter defenses, monitor DNS queries for any resurgence, and consider adding the name servers to allowlist exceptions only if legitimate services are later identified. Ongoing threat‑intel feeds should be queried for any future re‑registration or activation, and any detection that emerges from endpoint or network sensors should be correlated with the existing blocklist entries. The absence of a reachable web service prevents direct analysis of landing page content, login forms, or malicious scripts.
Because the domain is currently taken offline, active exploitation cannot be observed, but historical blocklist entries indicate that it was likely part of a broader phishing infrastructure that leveraged disposable domains. Security teams should also review any recent alerts that reference similar disposable‑domain patterns from the same registrar, as Hello Internet Corp has been associated with other short‑lived malicious zones. Correlation with the two blocklist identifiers may aid in early detection of repeat actors.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
域名情报
技术详情DNS、TLS 名称和时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
取证情报
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控