sm3y7w[.]top
“Shopee”
sm3y7w.top — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 16/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, Cluster25, CRDF); PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies the domain sm3y7w.top as a generic phishing site that impersonated the e-commerce platform Shopee. This domain is now offline, having been taken down after its malicious activities were detected. Its primary threat was deceiving users into revealing sensitive information under the guise of a legitimate Shopee login or payment page.
Technical analysis reveals that sm3y7w.top was flagged by 16 out of 95 security vendors on VirusTotal, indicating a high level of consensus on its malicious nature. The domain resolved to IP address 180.178.44.100 and was created on February 21, 2026. It appeared on one security blocklist and was found in two AlienVault OTX threat intelligence pulses. The page title was set to 'Shopee', and the SSL certificate used was E7, which is relatively weak and not typically employed by legitimate e-commerce sites. The domain's registrar information was not disclosed in the available intelligence, but the combination of these indicators strongly supports the conclusion that this was a phishing operation.
Given that sm3y7w.top is now offline, the immediate risk is mitigated. However, users who may have interacted with this domain should monitor their accounts for unauthorized activity and change passwords if any credentials were entered. PhishDestroy recommends that all users verify the authenticity of any website claiming to be Shopee by checking for the correct URL, looking for valid HTTPS certificates, and avoiding clicking on unsolicited links. Staying informed about current phishing campaigns is crucial for maintaining cybersecurity.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。