telalapartments[.]spahotel[.]guru
“Telal Hotel Apartments Dubai - Dubai, United Arab Emirates”
telalapartments.spahotel.guru — No verificado. Tipo de estafa: Credential Phishing. Resumen de las pruebas: VirusTotal 17/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, Cluster25, CRDF); PhishDestroy score 95/100. Registrador: Spaceship.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain, telalapartments.spahotel.guru, is identified as a credential theft operation impersonating Telal Hotel Apartments, a legitimate hospitality entity based in Dubai, United Arab Emirates. Analysis indicates the threat actor designed the site to harvest login credentials, payment details, or personal information from victims under the guise of a hotel booking platform. No crypto drainer kit signatures were observed, but the domain exhibits classic indicators of credential harvesting, including form fields for sensitive data submission and brand impersonation tactics. Infrastructure analysis reveals the domain was registered on April 25, 2026, through Spaceship, Inc., and resolves to IP address 52.29.26.157, hosted on AWS EC2 infrastructure in the eu-central-1 region (Germany). The domain appears on one security blocklist and is flagged by 17 out of 95 security vendors on VirusTotal. It employs a Let's Encrypt SSL certificate (serial number E7) to mimic legitimacy, though this does not mitigate the underlying threat. The page title, 'Telal Hotel Apartments Dubai - Dubai, United Arab Emirates,' directly mirrors the branding of the legitimate entity, increasing the likelihood of successful deception. As of the latest assessment, the domain has been taken offline, likely due to automated takedown mechanisms or registrar intervention. However, residual risk persists due to the potential for re-registration or migration to a new domain under the same threat actor. Users who interacted with the domain prior to its takedown are advised to reset credentials for any accounts accessed during the exposure window, monitor financial statements for unauthorized transactions, and verify the authenticity of any communications claiming to originate from Telal Hotel Apartments. Organizations should update blocklists to include this domain and its associated IP address to prevent future access attempts.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Registration: spahotel.guru
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain spahotel.guru behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of telalapartments.spahotel.guru · checked Apr 26, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.