uktopwinss[.]store
uktopwinss.store — 未验证. 证据摘要: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 88/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of uktopwinss.store indicates that the domain is actively being used for phishing. The domain was registered on June 12, 2026 and resolves to the IPv4 address 125.124.123.122. VirusTotal reports that five of ninety‑one scanned security vendors have flagged the domain as malicious, demonstrating that multiple independent tools have identified suspicious behavior. The domain is listed on a single external blocklist and has been explicitly blocked by the PhishDestroy mitigation service, reinforcing the assessment of malicious intent. The elevated risk rating and active status further suggest ongoing operation.
The available intelligence does not include details such as SSL certificate information, HTTP response codes, page title, or any observed payload. Consequently, the precise phishing vector—whether credential harvesting, credential‑stealing login pages, or other social‑engineering tactics—remains undefined. Likewise, no attribution to a specific phishing kit or actor can be derived from the current data set. Defenders should treat any traffic to uktopwinss.store as hostile.
Network‑level controls ought to block DNS resolution and outbound connections to 125.124.123.122. Endpoint security solutions that incorporate URL filtering should incorporate the domain into block lists, and email gateways should flag messages containing the domain as malicious. Continuous monitoring of the IP address and any future VirusTotal submissions is recommended to capture additional detections that may clarify the threat’s capabilities. Organizations that have already observed connections to this domain should conduct forensic analysis of affected hosts to determine whether credential data or other sensitive information may have been exfiltrated.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。