MALICIOUS — CRITICAL
iuta[.]today
20 of 91 security engines flagged the domain; the latest stored check returned HTTP 502.
- VirusTotal
- 20/91
- Blocklists
- No stored match
- التوفر
- المحتوى غير متوفر · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
iuta.today — المحتوى غير متوفر (HTTP 502). ملخص الأدلة: VirusTotal 20/91 (ADMINUSLabs, alphaMountain.ai, AlphaSOC, BitDefender, Bkav); URLQuery 5 alerts; Spamhaus DBL_BOTNET; CF Radar malicious; PhishDestroy score 100/100. مسجّل النطاق: PDR.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
iuta.today was registered on 2026-03-04 through PDR Ltd. d/b/a PublicDomainRegistry.com and is currently active. DNS resolution points to 31.97.61.212 and the domain uses four RegWay name servers (dns1.regway.com, dns2.regway.com, dns3.regway.com, dns4.regway.com). VirusTotal reports that 23 of 91 scanned security vendors flag the domain as malicious, indicating a strong consensus of suspicious behavior. AlienVault OTX has linked the domain to two separate threat‑intel pulses, reinforcing its association with malicious activity. The domain is classified as generic_phishing with a high risk rating and remains listed as active. No additional context such as page content or targeted brands has been published, so the exact phishing campaign details remain unknown. Defenders should block DNS queries for iuta.today, monitor outbound connections to 31.97.61.212, and include the domain in indicator‑of‑compromise (IOC) lists. Ongoing surveillance of the associated name servers and any future VirusTotal updates is advised to capture potential changes in detection rates.
نطاق تغطية البيانات13 recorded checks
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | iuta.today |
malicious | Sinkholed |
| DigiCert UltraDNS | iuta.today |
malicious | Sinkholed |
| Hagezi Threat Feed | iuta.today |
malicious | Sinkholed |
| DNS4EU | iuta.today |
malicious | Sinkholed |
| Quad9 DNS | iuta.today |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260718-83322F Recipient: abuse@publicdomainregistry.com Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.