Statistics

SSL Corporation

URLs
12
Brands targeted
8
Unique IPs
12

What is SSL Corporation?

SSL Corporation RSA & ECDSA since 2016 chains to SSL.com Root Certification Authority RSA, SSL.com Root Certification Authority ECC

Operator-name view of SSL.com, a commercial CA based in Houston, Texas. When the certificate's Organization (O=) field shows 'SSL Corporation', the issuing intermediate is one of SSL.com's own subordinates rather than a CN phishunt has a page for. Sells paid DV/OV/EV certificates directly and through resellers, and issues free 90-day DV certificates over ACME, which is the path that shows up on phishing hostnames. Being a paid-first CA does not make its presence a signal on its own.

Suspicious sites — confidence is not always 100%. Use for Threat Hunting or watchlists.

Last check (UTC) First seen (UTC) URL Screenshot Flags Details
2026-08-26 09:30 2026-08-13 15:11
https://071439625396510-na4-docusign-signingwe6ee67wd.pages.dev
Screenshot of 071439625396510-na4-docusign-signingwe6ee67wd.pages.dev urlscan Details
2026-08-26 09:30 2026-08-13 12:20
https://penyembah-google.pages.dev
Screenshot of penyembah-google.pages.dev urlscan Details
2026-08-26 09:30 2026-08-13 02:32
https://googleservices426.pages.dev
Screenshot of googleservices426.pages.dev urlscan Details
2026-08-26 09:30 2026-08-12 19:04
https://maen-maen-terus-google.pages.dev
Screenshot of maen-maen-terus-google.pages.dev urlscan Details
2026-08-26 09:30 2026-08-10 20:32
https://ledger-lives-loged-in.pages.dev
Screenshot of ledger-lives-loged-in.pages.dev urlscan Details
2026-08-26 09:30 2026-08-03 19:19
https://fifaworldcups26.com
Screenshot of fifaworldcups26.com urlscan Details
2026-08-26 09:30 2026-08-02 09:53
https://googleplrzy.com
Screenshot of googleplrzy.com urlscan Details
2026-08-26 09:30 2026-07-22 23:04
https://ebay-app.com
Screenshot of ebay-app.com urlscan Details
2026-08-26 09:30 2026-07-03 20:23
https://facebook-dating-group.pages.dev
Screenshot of facebook-dating-group.pages.dev urlscan Details
2026-08-26 09:30 2026-07-01 16:46
https://netflix6.com
Screenshot of netflix6.com urlscan Details
2026-08-26 09:30 2026-06-25 05:54
https://microsoftjk.eu.org
Screenshot of microsoftjk.eu.org urlscan Details
2026-08-26 09:30 2026-06-23 11:52
https://facebook-365.pages.dev
Screenshot of facebook-365.pages.dev urlscan Details

Suspicious sites — confidence is not always 100%. Use for Threat Hunting or watchlists.

URL Screenshot Flags Details
https://071439625396510-na4-d… Screenshot of 071439625396510-na4-docusign-signingwe6ee67wd.pages.dev urlscan Details
https://penyembah-google.page… Screenshot of penyembah-google.pages.dev urlscan Details
https://googleservices426.pag… Screenshot of googleservices426.pages.dev urlscan Details
https://maen-maen-terus-googl… Screenshot of maen-maen-terus-google.pages.dev urlscan Details
https://ledger-lives-loged-in… Screenshot of ledger-lives-loged-in.pages.dev urlscan Details
https://fifaworldcups26.com Screenshot of fifaworldcups26.com urlscan Details
https://googleplrzy.com Screenshot of googleplrzy.com urlscan Details
https://ebay-app.com Screenshot of ebay-app.com urlscan Details
https://facebook-dating-group… Screenshot of facebook-dating-group.pages.dev urlscan Details
https://netflix6.com Screenshot of netflix6.com urlscan Details
https://microsoftjk.eu.org Screenshot of microsoftjk.eu.org urlscan Details
https://facebook-365.pages.dev Screenshot of facebook-365.pages.dev urlscan Details

Brands most often impersonated with SSL Corporation

Among the active sites currently using a SSL Corporation certificate, these are the brands attackers are mimicking most:

Frequently asked questions about SSL Corporation

What is SSL Corporation?

SSL Corporation is a publicly trusted intermediate certificate authority operated by SSL Corporation and chained to SSL.com Root Certification Authority RSA, SSL.com Root Certification Authority ECC. It is recognized by all mainstream browsers and operating system trust stores, so the certificate itself is not a phishing indicator - the same intermediate signs millions of legitimate sites. phishunt only flags the specific domains listed below as suspicious; SSL Corporation as a CA is fine.

Is SSL Corporation a legitimate certificate authority?

Yes. SSL Corporation is a publicly trusted intermediate CA operated by SSL Corporation, included in the Microsoft, Apple, Google and Mozilla root trust stores. Every mainstream browser automatically accepts certificates it signs. The intermediate itself is not a phishing signal — what matters is the specific domain. phishunt flags only the suspicious domains listed below; SSL Corporation keeps signing millions of legitimate sites.

Who runs the SSL Corporation certificate authority?

SSL Corporation is operated by SSL Corporation. It is a RSA & ECDSA intermediate that chains up to the SSL.com Root Certification Authority RSA, SSL.com Root Certification Authority ECC root, which SSL Corporation also owns. Anyone can look up the chain in the public Certificate Transparency logs; the same operator publishes a Certificate Policy / Certification Practice Statement (CP/CPS) describing how issuance and revocation work.

What does SSL Corporation mean when my browser shows it as the issuer?

When a browser shows SSL Corporation as the certificate issuer for a site, it means TLS was validated through SSL Corporation's RSA & ECDSA chain ending at SSL.com Root Certification Authority RSA, SSL.com Root Certification Authority ECC. That is normal for tens of millions of legitimate sites that use SSL Corporation's automated DV TLS. The certificate proves the connection is encrypted and that the certificate matches the hostname — it does not prove the site behind it is trustworthy. Always verify the domain name itself.

Why does SSL Corporation show up on phishing sites?

SSL Corporation issues RSA & ECDSA domain-validated certificates automatically and at no cost (or very low cost), which is the exact workflow scammers need to put HTTPS on a throwaway domain. Domain validation only proves that the requester controls the domain name, not that the site behind it is trustworthy. phishunt lists the specific domains currently flagged below — those are the suspicious ones, not SSL Corporation itself.

How do I verify a certificate issued by SSL Corporation?

In a desktop browser, click the padlock in the address bar and open the certificate viewer. Confirm the issuer chain ends at SSL.com Root Certification Authority RSA, SSL.com Root Certification Authority ECC, that the subject matches the domain you expect, and that the notAfter date has not passed. A valid SSL Corporation certificate only proves TLS was negotiated correctly — always verify the domain name itself belongs to the service you intended to visit.

Who can I report a suspicious SSL Corporation certificate to?

Operators accept abuse reports at their public contact addresses. SSL Corporation publishes a revocation and abuse policy on its website. phishunt continuously submits flagged domains to Google Safe Browsing, OpenPhish, PhishTank, urlscan.io and TweetFeed — which is typically the fastest path to getting the certificate revoked.