hgg316[.]it
“Welcome aboard”
Zusammenfassung der Beweislage
The domain hgg316.it was registered on August 12, 2025 through the registrar 1 Api GmbH. It is delegated to Cloudflare name servers (aria.ns.cloudflare.com and arturo.ns.cloudflare.com) and resolves to the IP address 188.114.96.3, which is owned by Cloudflare, Inc. (ASN 13335) and geolocated in the United States. The site presented a page title of “Welcome aboard” and was served over TLS using a certificate issued by Google Trust Services under the WE1 trust anchor. Technical fingerprints show the use of Cloudflare’s edge network and support for HTTP/3.
The domain appears on a single security blocklist and has been explicitly blocked by the PhishDestroy feed. VirusTotal analysis recorded detections by two of the ninety‑five scanned vendors, indicating that at least some security products recognize the domain as malicious. As of the reporting date (July 24 2026) the domain is listed as taken offline, and no further HTTP response details are available.
What remains unclear is the exact content of the hosted page beyond the title, the specific phishing lure employed, and any targeted brand or credential‑capture mechanism. Defenders should treat hgg316.it as a confirmed phishing infrastructure: block the domain at perimeter firewalls, DNS resolvers, and proxy filters; monitor the associated IP address for any re‑use; and incorporate the observed indicators (IP, name servers, SSL certificate issuer, and VirusTotal detection count) into threat‑intel feeds. Continuous re‑scanning is advised in case the site is re‑activated or repurposed.
Data Coverage
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 12.08.2026
Erkennungszeitleiste
-
Domainstatus
Erreichbar → Nicht erreichbar
-
Cloudflare Radar
Cloudflare-Radar-Scan gespeichert · Scan öffnen
-
Domainstatus
Nicht erreichbar → Erreichbar
Technologien
2 Technologien mit hoher Konfidenz erkannt
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt