cadastro[.]art
“HELLGATE”
cadastro.art — Contenu indisponible. Usurpation de l'identité de la marque : Instagram; Type d'arnaque : Fake Airdrop. Résumé des preuves: VirusTotal 2/94 (Seclookup, SOCRadar); PhishDestroy score 56/100. Bureau d’enregistrement: Hostinger.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
A newly registered domain, cadastro.art, has been flagged as a phishing site under active use. The domain name suggests a generic registration or verification portal, a common lure for credential harvesting or payment fraud campaigns. No specific brand impersonation or drainer kit signature has been identified in current telemetry, indicating a potentially opportunistic or early-stage campaign targeting unsuspecting users.
Technical analysis reveals several concerning indicators: the domain, registered through HOSTINGER operations (UAB), resolves to IP 35.157.26.135 and utilizes a Let’s Encrypt SSL certificate for legitimacy. The domain was created on March 23, 2026, and currently shows 0 detections across 95 VirusTotal engines. Despite its clean reputation, the domain remains unlisted in Google Safe Browsing (GSB) and has not been added to any major blocklists, leaving it accessible to potential victims.
As of this advisory, cadastro.art remains active and poses an elevated but unquantified risk due to its recent registration and lack of detection coverage. Immediate defensive actions include network-level blocking of the domain and IP, user awareness training to avoid interaction with unsolicited registration links, and continued monitoring for new IOCs. While the current threat level is marked 'under_investigation,' the absence of detections and blocklist coverage suggests this domain could escalate quickly. SOC teams are advised to treat this as a high-priority indicator and prioritize containment to prevent downstream compromise.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse forensique
Technologies · 2 identified
Platform for deploying and hosting modern web applications.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of cadastro.art · checked Mar 24, 2026
Données factuelles et rapports externes
PD-20260324-7978EE Recipient: abuse@hostinger.com Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif