telebgvmlg.com
“Messenger”
Analysis of www.telebgvmlg.com indicates that the domain is actively being used for phishing operations and is classified as high risk.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
证据摘要
Analysis of www.telebgvmlg.com indicates that the domain is actively being used for phishing operations and is classified as high risk. The domain was registered on May 18, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and is served by the authoritative name servers ns3.my-ndns.com and ns4.my-ndns.com. DNS resolution points to the IPv4 address 27.124.47.186, which remains reachable as of the report date.
Threat intelligence feeds have placed the domain on a security blocklist, and it is explicitly blocked by the PhishDestroy filtering service. VirusTotal scans have returned detections from ten out of ninety‑five antivirus and URL‑reputation engines, reinforcing the malicious assessment. No additional infrastructure details such as SSL certificate information, HTTP response codes, or page title have been published, so the surface‑level characteristics of the hosted content remain unverified.
Defenders should prioritize immediate blocking of the domain and the associated IP address at network perimeters, update intrusion‑detection signatures to include the observed name server pattern, and monitor for any new sub‑domains that resolve to the same IP block. Continuous re‑evaluation is advised, as further analysis may uncover additional phishing payloads or credential‑harvesting pages hosted on the same infrastructure.
网络安全情报 Registrar context
威胁响应 Pipeline
公共封禁名单状态
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
Scanner note: timeout: raw=timeout; http=0; via=http_proxy; error=HTTPConnectionPool(host='107.175.208.164', port=6105): Read timed out. (read timeout=7)
Latest Classified Outcome 2026-09-20 02:35:16 UTC
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。