microsoftliveupdate[.]online
microsoftliveupdate.online 网络钓鱼与安全检查
“microsoftliveupdate.online”
microsoftliveupdate.online — 隐形 · 可达 (HTTP 502). 品牌冒充:Microsoft; 诈骗类型:Brand Impersonation. 证据摘要: VT 1/91 (SOCRadar); URLScan no malicious verdict; GSB no flag; BL 2 (MetaMask, SEAL); cloaking observed; PD 98/100. 注册商: GoDaddy.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
microsoftliveupdate.online entered the PhishDestroy evidence set on Jun 21, 2026. The hostname explicitly references Microsoft; stored content metadata identifies the same apparent target. The stored content classification is brand impersonation. The assembled evidence scores 98/100 (critical).
Three independent sources are positive: VirusTotal, MetaMask, and SEAL. VirusTotal recorded 1 detections among 91 engines: SOCRadar on Jun 22, 2026 at 02:00 UTC. MetaMask and SEAL listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 14:20 UTC. The evidence is not unanimous. Google Safe Browsing returned no flag on Jun 21, 2026 at 05:30 UTC. URLScan completed without a malicious verdict (score 0) on Jun 21, 2026 at 05:26 UTC.
Cloaking was recorded with HTTP 502 on Aug 7, 2026 at 01:20 UTC. Registration records for the domain list GoDaddy.com, LLC as the registrar and Jun 19, 2026 as the creation date. Registration preceded first observation by 1 day. At collection time, the hostname resolved to 76.223.105.230 (AS16509 Amazon.com, Inc.). The recorded endpoint location is Seattle, US. The stored server header is DPS/2.0.0+sha-6d76b80. Captured page title: “microsoftliveupdate.online”. DOM analysis completed on Jun 21, 2026 at 06:20 UTC; stored DOM score 98/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. IoC extraction completed on Jul 29, 2026 at 02:52 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists Starfield Technologies, Inc. / Starfield Secure Certificate Authority - G2 as the certificate issuer with validity through Nov 11, 2026; checked Jun 21, 2026 at 07:00 UTC.
Taken together, the page content and independent findings support classifying this hostname as Microsoft-themed brand impersonation.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
ICANN 收到了钱。问责却没有到来。
对于这个 gTLD,上述注册商依据与 ICANN 签订的合同运营。ICANN 收取与注册、续费和转移相关的年度费用、浮动费用及按交易计收的费用。
认证:已变现。问责:请稍后再来查看。
接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。