uioiure[.]top
“Sign in to Xfinity”
uioiure.top — 内容不可用 (HTTP 502). 品牌冒充:Xfinity; 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 7 detections (engine total unavailable) (ADMINUSLabs, Bfore.Ai PreCrime, CRDF, Fortinet, G-Data); URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 83/100. 注册商: NameSilo.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain uioiure.top is identified as an active credential phishing site designed to harvest sensitive user information, including login credentials, financial details, or personal data. Analysis indicates this domain employs deceptive techniques, such as mimicking legitimate login portals or financial institutions, to trick users into submitting confidential information. The infrastructure is configured to evade initial detection while maintaining persistence, increasing the likelihood of successful exploitation against unsuspecting visitors. Technical evidence confirms the malicious nature of uioiure.top. The domain is registered through NameSilo, LLC, and was created on December 15, 2025, suggesting a recent and potentially short-lived operation typical of phishing campaigns. It resolves to the IP address 104.21.28.35, hosted on AS13335 (Cloudflare, Inc.), a network frequently leveraged to obscure the true origin of malicious infrastructure. VirusTotal reports 7 out of 95 security vendors flagging this domain as malicious, while Google Safe Browsing explicitly classifies it as phishing. Additionally, the domain appears on one security blocklist and is actively blocked by PhishDestroy, further validating its high-risk status. Notably, the absence of an SSL certificate may indicate an attempt to avoid scrutiny or reduce operational costs, though modern browsers may still warn users of insecure connections. Users who have visited uioiure.top or interacted with its content should take immediate remedial actions. First, any credentials entered on the site must be considered compromised and should be changed immediately across all platforms where the same or similar passwords were used. Enable multi-factor authentication (MFA) on critical accounts to mitigate unauthorized access. Monitor financial statements and account activity for signs of fraudulent transactions or unauthorized access. If personal or financial information was submitted, consider reporting the incident to relevant authorities or credit monitoring services. Finally, ensure endpoint security tools are updated and perform a full system scan to detect potential malware or secondary infections that may have been delivered through the phishing site.
网络安全情报 Registrar context
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告
PD-20260528-A3FF0A Recipient: abuse@nic.top 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。