Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@omegatech.sc.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
zoemartinfleuriste[.]eu
“Domain Default page”
zoemartinfleuriste.eu — لم يتم التحقق منها. نوع الاحتيال: Crypto Drainer. ملخص الأدلة: VirusTotal 7/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. مسجّل النطاق: Dynadot.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, zoemartinfleuriste.eu, is flagged as an active high-risk crypto drainer phishing site. Analysis indicates it is designed to harvest wallet credentials and drain cryptocurrency assets from victims by impersonating legitimate services. The threat type is classified as a crypto drainer, a specialized form of phishing that targets digital wallet connections and transaction approvals, often leading to irreversible financial losses. Infrastructure analysis reveals the domain resolves to the IP address 158.94.211.185 and was registered on May 24, 2026, through an unnamed registrar, suggesting a likely fraudulent or short-term registration pattern. The domain is currently active and presents a generic 'Domain Default page' as its page title, a common tactic to evade initial scrutiny while hosting malicious scripts. Detection metrics show 3 out of 95 security vendors on VirusTotal flag the domain as malicious, while it appears on three distinct security blocklists. The SSL certificate is issued by Let's Encrypt (YR2), a legitimate provider often abused by threat actors to lend false credibility to phishing sites. Mitigation against this crypto drainer requires immediate action from both end-users and network administrators. Users should avoid interacting with the domain, particularly when prompted to connect wallets or approve transactions. Wallet software should be configured to reject connections from untrusted domains, and hardware wallets should be used for high-value transactions to prevent unauthorized access. Network-level protections, such as DNS filtering or IP-based blocking of 158.94.211.185, are recommended to prevent access to the domain. Security teams should monitor for related indicators, including the domain's creation date and associated IP, to identify potential infrastructure reuse in future campaigns.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260524-6AA223 Recipient: abuse@omegatech.sc هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب