nmqupdate[.]live
nmqupdate.live 网络钓鱼与安全检查
nmqupdate.live — 可达 · 访问受限 (HTTP 403). 诈骗类型:Credential Phishing. 证据摘要: VT 10/93 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); URLQuery 0; URLScan no malicious verdict; GSB no flag; Spamhaus DBL_PHISH; BL 2 (MetaMask, SEAL); CF Radar malicious; PD 85/100. 注册商: NiceNIC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
nmqupdate.live entered the PhishDestroy evidence set on Jan 30, 2026. The stored content classification is credential phishing. Evidence score: 85/100 (high).
Positive sources (5): VirusTotal, MetaMask, SEAL, Spamhaus DBL, and Cloudflare Radar. VirusTotal recorded 10 detections among 93 engines: alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, Lionic, Seclookup, SOCRadar, Sophos, Trustwave on Jul 18, 2026 at 16:45 UTC. MetaMask and SEAL listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 18:20 UTC. Spamhaus DBL: DBL_PHISH on Jul 14, 2026 at 10:36 UTC. Cloudflare Radar classified the hostname as malicious and assigned the categories security risks, security threats, and dga domains; its verdict timestamp was not retained. Other stored checks: AlienVault OTX listed 1 community pulse reference (not vendor detections) on Mar 1, 2026 at 10:43 UTC. URLQuery recorded no positive detection. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC. URLScan completed without a malicious verdict (score 0) on Mar 26, 2026 at 12:39 UTC.
An access-restricted HTTP 403 response was recorded on Aug 7, 2026 at 02:07 UTC. Latest classified outcome: provider block observed; cause cloudflare antiphishing; mechanism phishing interstitial; observed actor Cloudflare on Aug 7, 2026 at 00:07 UTC. Registration records for the domain list NiceNIC International Group Co., Limited as the registrar. At collection time, the hostname resolved to 104.21.8.17 on AS13335 (CLOUDFLARENET - Cloudflare, Inc., US). The associated network metadata labels the endpoint as AS13335 Cloudflare, Inc. in San Francisco, US. The stored server header is cloudflare. DOM analysis completed on Apr 10, 2026 at 19:22 UTC; stored DOM score 15/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan; no page title was retained, so the captures preserve the landing-page appearance. IoC extraction completed on Aug 2, 2026 at 04:01 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists Google Trust Services / WE1 as the certificate issuer with validity through Apr 29, 2026; checked Mar 15, 2026 at 05:42 UTC.
Content indicators and positive source findings support a credential phishing classification.
网络安全情报 Registrar Integrity Alert
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
ICANN 收到了钱。问责却没有到来。
对于这个 gTLD,上述注册商依据与 ICANN 签订的合同运营。ICANN 收取与注册、续费和转移相关的年度费用、浮动费用及按交易计收的费用。
认证:已变现。问责:请稍后再来查看。
接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。
Latest Classified Outcome 2026-08-07 02:07:00 UTC
所用技术 · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。