MALICIOUS — CRITICAL
web05meet.us 网络钓鱼与安全检查
web05meet[.]
This domain is flagged as a high-risk phishing site impersonating a XAMPP web server portal.
- VirusTotal
- 2/93
- Blocklists
- 2 · MetaMask, SEAL
- 可用性
- 未验证
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@registrar.eu.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
web05meet.us — 未验证. 证据摘要: VirusTotal 2/93 (Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. 注册商: Hosting Concepts.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Evidence Analysis
This domain is flagged as a high-risk phishing site impersonating a XAMPP web server portal. Analysis indicates the site was designed to deceive users into interacting with a fraudulent server interface, likely to harvest credentials or distribute malicious payloads under the guise of a legitimate development environment. The presence of the "Welcome to XAMPP" page title suggests an attempt to mimic a default XAMPP installation, a common tactic to exploit developers or system administrators unfamiliar with the expected environment. Infrastructure analysis reveals the domain was registered on February 21, 2026, through Hosting Concepts B.V. d/b/a Registrar.eu. It resolves to the IP address 45.61.129.29 and is currently offline. The domain appears on four security blocklists and is flagged by 18 out of 95 security vendors on VirusTotal. Additional intelligence sources assign a trust score of 0/100, and the domain is actively blocked by MetaMask, SEAL, PhishDestroy, and Maltrail. The combination of early detection, low trust scores, and broad blocklist inclusion underscores the severity of the threat. Mitigation steps for this specific threat type include immediate blocking of the domain and associated IP at the network perimeter. Organizations should review logs for connections to 45.61.129.29 or attempts to access web05meet.us, particularly from development or administrative workstations. Users who may have interacted with the site should rotate credentials for any accounts accessed during the exposure window. Given the XAMPP impersonation, additional scrutiny should be applied to systems where development tools are installed, including checking for unauthorized modifications to web server configurations or unexpected services running on default XAMPP ports.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
数据覆盖范围12 recorded checks
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告Independent lookups and source reports
PD-20260206-E72A22 Recipient: abuse@registrar.eu Victim safety and official reportingImmediate actions and verified reporting channels
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。