m2recovery[.]ca
m2recovery.ca — 未验证. 证据摘要: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); PhishDestroy score 98/100. 注册商: Open Provider.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain m2recovery.ca is currently active and classified as a high‑risk generic phishing site. Registration records indicate the domain was created through Open Provider Inc., and its authoritative name servers are listed as verify1.registrar.eu, verify2.registrar.eu, and verify3.registrar.eu. An HTTP request to the host returns a 200 OK status, confirming that a web service is reachable. Threat intelligence sources have placed the domain on a single security blocklist, and it is actively blocked by the PhishDestroy service.
VirusTotal analysis shows that 15 out of 91 scanned security vendors have flagged the domain as malicious, providing additional corroboration of its phishing nature. No further infrastructure details such as IP address, autonomous system number, or SSL certificate information are available from the supplied data. The lack of additional context—such as page title, brand targeting, or specific phishing kit identifiers—means that analysts cannot yet attribute the campaign to a particular victim demographic or confirm the exact content served to end users.
Defenders should continue to monitor m2recovery.ca for any changes in hosting or detection metrics, enforce blocklist rules that include this domain, and consider adding it to internal URL filtering policies. Organizations are advised to educate users about unsolicited communications that reference recovery services, as the domain appears to be leveraged for credential harvesting. Ongoing observation of VirusTotal and other reputation services is recommended to capture any escalation in detection counts or new vendor assessments.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。