dash.primevisionv.com
“Home”
Security analysis of www.dash.primevisionv.com covers observed phishing indicators, infrastructure evidence, current status, and defensive guidance.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
证据摘要
The domain www.dash.primevisionv.com was registered on September 30, 2025 through TuringSign Inc. d/b/a Cosmotown and is currently resolved to the IPv4 address 5.182.208.207. Its authoritative name servers are ns5.maskhosting.com and ns6.maskhosting.com, indicating hosting under the MaskHosting provider. The domain remains active as of the report date, July 27, 2026, and is classified as a high‑risk generic phishing infrastructure. Independent analysis by PhishDestroy has placed the domain on its blocklist, and it appears on one additional security blocklist, confirming that multiple threat‑intel feeds have flagged the host.
VirusTotal reports that one out of ninety‑one scanned security vendors flagged the domain, providing a minimal but non‑zero detection signal. No public SSL certificate details, HTTP response codes, or page title information were supplied, so the content of the site cannot be described at this time. The limited visibility into the payload means that the exact phishing campaign, target brand, or credential‑harvesting technique remains unknown. Defenders should block network traffic to 5.182.208.207 and to the domain itself, add the domain to URL filtering and email security policies, and monitor for any related DNS queries.
Because the registrar and hosting infrastructure are publicly known, threat‑hunting teams can query for other domains sharing the same name servers or IP address to uncover additional malicious assets. Continuous re‑scanning of the domain on multi‑engine platforms such as VirusTotal is advised to capture any future detections. Until further forensic evidence is obtained, the domain should be treated as an active phishing conduit and mitigated accordingly.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | www.dash.primevisionv.com |
malicious | Sinkholed |
Forensic History & Detection Timeline
-
Threat First Observed Jul 27, 2026 · 09:29 UTCDomain ingestion complete. Initial state is marked as alive pointing to IP
5.182.208.207.
威胁响应 Pipeline
公共封禁名单状态
Evasion analysis
Cloaking suspected: scanner and victim titles differ
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
LiteSpeed
Scanner note: redirect: raw=redirect_302; http=302; via=https_proxy; location=https://www.dash.primevisionv.com/cgi-sys/suspendedpage.cgi; server=LiteSpeed
技术 · 6 identified
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of dash.primevisionv.com · checked Jul 27, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。