gtioine[.]info
“Access to this page has been denied”
gtioine.info — Último activo conocido (HTTP 301). Resumen de las pruebas: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Google Safe Browsing flagged; Spamhaus DBL_PHISH; PhishDestroy score 100/100. Registrador: NiceNIC.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Analysis of gtioine.info indicates an active phishing infrastructure. The domain was registered on June 01, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and is currently delegated to two authoritative name servers that belong to a well‑known content delivery network. DNS resolution points to the address 104.21.53.138, an IP hosted in Canada and associated with a large CDN operator. The site presents a valid TLS certificate from a public certificate authority and returns an HTTP 301 redirect, followed by a page whose title reads "Access to this page has been denied". Threat intelligence sources have marked the domain on a security blocklist, and PhishDestroy reports it as active. Google Safe Browsing flags the domain for social‑engineering content, and VirusTotal records detections from ten of ninety‑one scanning engines. Detected infrastructure components include caching and edge‑delivery layers, but specific product names are omitted per policy. The exact phishing payload or credential‑harvesting page has not been observed, leaving the malicious content unknown. Defenders should block the domain at network perimeter, update DNS filtering rules, and monitor for any outbound connections to the resolved IP. Continued surveillance of related hash and URL indicators is recommended to capture any evolving malicious payloads associated with this infrastructure.
Inteligencia de seguridad de red Registrar context
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-16 02:41:46 UTC
Tecnologías · 8 identified
Envoy is an open-source edge and service proxy, designed for cloud-native applications.
www.envoyproxy.io 100 % de confianzaAmazon Web Services (AWS) is a comprehensive cloud services platform offering compute power, database storage, content delivery and other functionality.
aws.amazon.com 100 % de confianzaAnalytics / tracking service — collects visitor behavior data for the site owner.
zipkin.io 100 % de confianzaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % de confianzaAmazon S3 or Amazon Simple Storage Service is a service offered by Amazon Web Services (AWS) that provides object storage through a web service interface.
aws.amazon.com 100 % de confianzaAmazon CloudFront is a fast content delivery network (CDN) service that securely delivers data, videos, applications, and APIs to customers globally with low latency, high transfer speeds.
aws.amazon.com 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Análisis de la configuración del sitio
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.