bagworkoor[.]lat
“Un instant…”
Détection enregistrée
Alerte de dissimulation
- Type de dissimulation
status_split- Score de dissimulation
- 4/6
Résumé des preuves
bagworkoor.lat is identified as an active phishing domain with a high-risk status, appearing on four different security blocklists. It has been flagged by 15 out of 95 security vendors on VirusTotal, indicating significant malicious activity associated with this domain. The domain was registered on March 16, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com and currently resolves to IP address 172.67.184.151. The infrastructure behind this domain utilizes technologies such as Cloudflare and HTTP/3, which are commonly employed to enhance performance and security, but can also be exploited by malicious actors to obscure their activities. The presence of Cart Functionality suggests the possibility of fraudulent transactions being facilitated through this domain.
The page title "Un instant…" indicates that the domain may be targeting users in a French-speaking demographic, which could be part of a broader strategy to lure victims into a phishing scheme. Analysis from AlienVault OTX reveals that this domain has been included in 23 threat intelligence pulses, underscoring its relevance in ongoing threat detection efforts. The domain's trust score from Gridinsoft is notably low at 0 out of 100, further confirming its malicious intent.
This domain is actively blocked by security measures from entities such as SEAL, MetaMask, PhishDestroy, and BLP-Malware. Organizations and individuals should remain vigilant against potential phishing attempts associated with bagworkoor.lat. It is advisable to educate users about recognizing phishing attempts and to implement robust email filtering solutions to prevent potential interactions with this domain. Continuous monitoring of threat intelligence feeds is recommended to remain informed about the evolving tactics employed by threat actors associated with this domain.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
8 sources externes surveillées Aucune correspondance
Chronologie de détection
-
VirusTotal
2 → 15
Signalements communautaires
Signalé par 1 membre de la communauté ; première observation le 17/03/2026
- Signalements enregistrés
- 1
- URL signalées uniques
- 1
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of bagworkoor.lat · checked Jul 12, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif