app[.]serturnglob[.]com
“Home - Saturn”
app.serturnglob.com — 内容不可用. 证据摘要: VirusTotal 1/93 (Fortinet); PhishDestroy score 71/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of app.serturnglob.com indicates that the domain was registered on February 21, 2026 and subsequently taken offline prior to the current reporting date of July 24, 2026. The sole page observed returned the title "Home – Saturn". The site employed an SSL certificate identified as R12, which provides no indication of a trusted certificate authority. Gridinsoft assigned a trust score of 0 out of 100, reflecting an extremely low confidence rating. VirusTotal records show that one of ninety‑three scanning engines flagged the domain, and the domain appears on a single security blocklist.
PhishDestroy, a known anti‑phishing feed, has also listed the domain as blocked. The current HTTP status is offline, preventing real‑time content retrieval. No additional intelligence such as ASN, hosting IP, country of registration, or associated malware kits is available in the supplied data. The combination of a fresh registration date, a generic page title, a low trust score, and at least one detection by a security vendor aligns with typical characteristics of a generic phishing infrastructure. However, the limited detection footprint—only one vendor detection and a single blocklist entry—means that the full scope of the campaign cannot be fully assessed.
It is unclear whether the domain was used in a targeted phishing campaign, a broader credential‑harvesting operation, or as a placeholder for future malicious activity. Defenders should continue to monitor the domain through existing threat‑intel feeds and consider adding it to internal deny‑list configurations. Given the SSL certificate’s low assurance and the historical presence on blocklists, automated web‑filtering solutions should enforce a block or sandbox redirect for any future resolution attempts. Organizations employing URL reputation services should treat any future resolution of app.serturnglob.com as high‑risk until additional evidence either confirms benign activity or further malicious behavior is observed.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。