sfassetinnovation[.]com[.]smalltalk[.]com[.]ng
“Steadfast innovation - Home”
sfassetinnovation.com.smalltalk.com.ng — 内容不可用 (HTTP 502). 品牌冒充:Google; 诈骗类型:Tech Support Scam. 证据摘要: VirusTotal 9/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, DNS8); PhishDestroy score 77/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain sfassetinnovation.com.smalltalk.com.ng was registered on 21 February 2026 and is currently taken offline. Technical reconnaissance shows that it resolves to the IP address 131.153.147.162, which is allocated to AS19437 SECURED SERVERS LLC and geolocated to the United States. The hosting provider therefore offers a plausible surface for a malicious operation targeting U.S. users. The site presented the page title "Steadfast innovation - Home," which does not directly reference the impersonated brand but is consistent with the naming pattern of many tech‑support scam sites. The SSL certificate in use is labeled R11, indicating a low‑trust rating that should raise immediate suspicion for any client attempting a TLS handshake.
Detection data from VirusTotal indicates that 9 of 93 scanning engines flagged the domain as malicious, providing independent confirmation of its threat profile. The domain appears on a single known blocklist and has been actively blocked by the PhishDestroy service, demonstrating that at least one commercial remediation platform has taken protective action. The documented scam type is a Tech Support Scam, and the intelligence explicitly states that the site impersonates Google, suggesting that any social‑engineering outreach would likely reference Google services to increase credibility.
Given the offline status, active monitoring of the IP address and any future DNS re‑registration is advised. Defenders should add the domain, its IP, and the associated ASN to deny lists and intrusion‑prevention signatures. Continued vigilance for similarly structured domains—particularly those using the "sfassetinnovation" prefix or the "smalltalk.com.ng" suffix—is recommended. Integration of the VirusTotal detection count into automated threat‑intel feeds will help correlate future sightings with this indicator.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。