picorechain[.]ru
“Home”
Resumen de las pruebas
Analysis of picorechain.ru conducted on 23 July 2026 confirms that the domain is currently offline but retains several indicators of malicious infrastructure. The domain was registered on 22 November 2024 through the R01‑RU registrar and uses the expired‑r01.ru nameserver pair ns1.expired.r01.ru and ns2.expired.r01.ru, a configuration commonly observed in abuse cases. DNS resolution points to the IPv4 address 194.36.191.196, which belongs to AS60117 (Host Sailor Ltd) in the Netherlands. No TLS certificate is presented for the host, indicating that any communication would occur over plain HTTP. The sole HTML title returned from the site is the generic string “Home”, and no additional page content has been captured, leaving the exact phishing payload undefined. Reputation services have flagged the domain.
PhishDestroy lists it as blocked, and it appears on one additional security blocklist. Gridinsoft assigns a trust score of 0 out of 100, the lowest possible rating. VirusTotal reports that 13 out of 95 scanned engines label the domain as malicious, reinforcing the suspicion of phishing intent. The limited detection count suggests that the site may have been short‑lived or hosted on a shared infrastructure that evaded broader scanning. Because the site is offline, direct observation of malicious pages, credential‑harvesting forms, or redirect chains is not possible. The lack of an SSL certificate and the generic page title prevent verification of the specific brand or campaign being impersonated.
No Safe Browsing, OTX, or additional vendor feeds are referenced in the supplied intelligence, so the broader threat landscape surrounding picorechain.ru remains unclear. Defenders should continue to block network traffic to 194.36.191.196 and to the domain itself at DNS and proxy layers. Monitoring of the hosting ASN (AS60117) for new domains that resolve to the same IP range is advised, as attackers frequently recycle infrastructure.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.