username6532[.]invoice-ads-agency[.]com
“Accounts Centre”
username6532.invoice-ads-agency.com — 内容不可用 (HTTP 502). 品牌冒充:Facebook. 证据摘要: VirusTotal 23/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 2 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100. 注册商: Gransy, s.r.o.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies username6532.invoice-ads-agency.com as an active generic phishing domain impersonating invoicing systems, currently under investigation for fraudulent activity targeting unsuspecting users. This domain exploits the trust associated with professional invoice communications to deceive recipients into divulging sensitive financial or login credentials. The site is designed to mimic legitimate business correspondence, leveraging urgency and familiarity to bypass user skepticism. Analysis confirms the domain is operational and poses an immediate risk to individuals and organizations expecting legitimate billing communications.
This domain was flagged by PhishDestroy with the following technical indicators: it resolves to IP 188.114.97.3, was registered through Gransy, s.r.o., and obtained an SSL certificate from Google Trust Services—none of which inherently validate legitimacy. The domain was created on April 22, 2026, and currently shows 23/95 detections on VirusTotal, indicating it remains undetected by many security vendors. As of this report, the domain has not been listed on major threat intelligence blocklists, and no public trust scores (e.g., from Google Safe Browsing) have been assigned—further highlighting the risk of delayed detection.
To mitigate exposure to this fake invoice scam, users and organizations should immediately block the domain username6532.invoice-ads-agency.com at the network and DNS levels. Employees should be informed through security awareness training to scrutinize unsolicited invoices, especially those arriving via email or embedded in ads, and to verify sender identities using official contact methods. Security teams are advised to monitor for traffic to the IP address 188.114.97.3 and inspect SSL certificates for anomalies. If users have already interacted with this domain, they should change passwords linked to invoicing or financial accounts and report any suspicious transactions to their financial institution. This domain remains under active surveillance, and updates will be provided as new intelligence emerges.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
Registration: invoice-ads-agency.com
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For the registrable domain invoice-ads-agency.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of username6532.invoice-ads-agency.com · checked Apr 26, 2026
证据与外部报告
PD-20260426-1F6A45 Recipient: abuse@regtons.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。