nus725[.]it
“Welcome aboard”
证据摘要
This domain is flagged as a generic phishing threat designed to harvest user credentials through a fraudulent login interface. The page title 'Welcome aboard' suggests an attempt to mimic legitimate service onboarding or authentication portals, likely targeting corporate or subscription-based users. Analysis indicates the site employs social engineering tactics to trick visitors into submitting sensitive information, which may include usernames, passwords, or multi-factor authentication codes. Infrastructure analysis reveals the domain was registered on January 19, 2025, through 1 Api GmbH and resolves to the IP address 104.21.80.1. Security telemetry shows the domain appears on 1 blocklist, with 2 out of 95 security vendors on VirusTotal flagging it as malicious. The Gridinsoft trust score of 0/100 further corroborates its high-risk classification. The domain has since been taken offline, but residual risk remains for users who interacted with it prior to deactivation. Users who visited nus725.it should immediately revoke any credentials entered on the site, particularly if reused across other platforms. Monitor accounts associated with the submitted information for unauthorized access attempts. Network administrators should block the domain and its resolving IP (104.21.80.1) at the perimeter. If browser sessions were active during the visit, clear cached data and reset active logins. Report the incident to relevant security teams for further investigation, including analysis of endpoint logs for potential follow-on activity.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
VirusTotal 分析
存档证据
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控