www-umbraprivacy[.]com
www-umbraprivacy.com — 未验证. 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); Spamhaus DBL_PHISH; PhishDestroy score 88/100. 注册商: NiceNIC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis indicates that www-umbraprivacy.com is associated with credential theft activity. Domains of this type commonly attempt to convince visitors to submit usernames, passwords, or other sensitive information through deceptive web pages that imitate trusted services or present misleading prompts. At the time of assessment, the domain was offline after being taken down, but historical indicators show that it had previously been identified as potentially malicious. The observed page title was "Just a moment...," which does not by itself establish legitimacy and may reflect intermediary infrastructure rather than the original content.
Technical evidence supports continued caution. The domain is flagged by 6 of 95 VirusTotal security vendors and was created on June 08, 2026. Registration records identify NICENIC INTERNATIONAL GROUP CO., LIMITED as the registrar. The domain resolved to IP address 188.114.97.3 and was associated with HSTS, Cloudflare, and HTTP/3 technologies. It presented a Google Trust Services SSL certificate while active. The domain appears on 1 security blocklist, was blocked by PhishDestroy, and is referenced in 4 AlienVault OTX threat intelligence pulses, indicating prior observation by multiple threat intelligence sources.
The domain is currently offline, reducing immediate exposure, but users who previously interacted with it should assume that any submitted credentials or sensitive information may have been exposed. Recommended actions include changing affected passwords immediately, enabling multi-factor authentication where available, reviewing account activity for unauthorized access, and monitoring for suspicious emails or login notifications. Security teams should preserve the domain, IP address 188.114.97.3, creation date June 08, 2026, and associated indicators for detection and retrospective log analysis, while continuing to monitor for related infrastructure or replacement domains that may reuse similar tactics.
网络安全情报 Registrar context
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-17 02:49:52 UTC
所用技术 · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of www-umbraprivacy.com · checked Jun 26, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。