verizon[.]vnijsabb[.]cc
verizon.vnijsabb.cc — 内容不可用 (HTTP 502). 品牌冒充:Genericcloudflare. 证据摘要: VirusTotal 17/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of verizon.vnijsabb.cc indicates that the domain was registered on 21 February 2026 and is currently taken offline. The host resolves to 104.21.5.146, an address owned by Cloudflare (AS13335) located in the United States. The SSL certificate presented is identified as WE1, suggesting a default or mis‑issued certificate rather than a brand‑validated chain. The domain is listed on a single security blocklist and has been actively blocked by the PhishDestroy feed.
VirusTotal reports 17 detections out of 93 scanning engines, confirming that multiple commercial scanners consider the site malicious. The combination of a recent registration date, Cloudflare front‑end, limited blocklist presence, and a modest detection rate is consistent with a short‑lived phishing infrastructure that was likely used to host credential‑stealing pages before being seized or shut down. Defenders should treat the indicator as malicious despite the offline status. The IP address 104.21.5.146 should be added to network deny lists, and any DNS queries for verizon.vnijsabb.cc should be blocked at the recursive resolver level.
Monitoring for re‑use of the same Cloudflare edge IP or for similarly patterned sub‑domains (e.g., *.vnijsabb.cc) is advisable, as threat actors frequently recycle hosting resources. Because the site’s content has not been archived, further intelligence on the exact phishing lure remains unknown. Continued correlation with endpoint telemetry and email gateway logs is recommended to catch any residual attempts that may have leveraged the domain before takedown.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。