gacorlek12[.]com
“gacorlek12.com”
Détection enregistrée
Alerte de dissimulation
- Type de dissimulation
bot_redirect_safe- Score de dissimulation
- 4/6
Résumé des preuves
This domain is flagged as a generic phishing resource with an elevated risk classification, specifically designed to harvest gaming account credentials. The infrastructure exhibits characteristics consistent with credential-theft campaigns, where victims are lured into entering login details on fraudulent interfaces mimicking legitimate gaming platforms. Analysis indicates the domain was operational for a short period before being taken offline, a common tactic to evade prolonged detection and takedown efforts. Infrastructure analysis reveals the domain gacorlek12.com was registered on July 8, 2025, through NameCheap, Inc., a registrar frequently observed in phishing operations due to its accessibility and bulk registration capabilities. The domain resolves to the IP address 172.67.190.9, which is associated with a content delivery network, a technique often employed to mask the true origin of malicious infrastructure. Security vendors on VirusTotal flagged the domain with 3 detections out of 95 engines, while additional threat intelligence sources, including AlienVault OTX, identified it in one threat pulse. The domain appears on one security blocklist and has been blocked by at least one dedicated anti-phishing system. Trust scores from independent evaluators are critically low, with Gridinsoft assigning a 0/100 rating and Scamadviser providing a 1/100 score. The SSL certificate is issued by Google Trust Services, a legitimate provider, which may lend a superficial appearance of security to unsuspecting users. Detected technologies include reCAPTCHA and HTTP/3, further suggesting an attempt to mimic legitimate services and evade automated detection mechanisms. Mitigation against this specific type of credential-harvesting threat involves several technical and procedural controls. Users who may have interacted with the domain should immediately reset passwords for any gaming or associated accounts, prioritizing those with financial or personal data access. Multi-factor authentication (MFA) should be enabled on all accounts to reduce the risk of unauthorized access, even if credentials are compromised. Network-level protections, such as DNS filtering or endpoint detection and response (EDR) solutions, can block access to known malicious domains and IPs. Organizations should monitor for indicators of compromise (IOCs), including the domain gacorlek12.com, its resolving IP 172.67.190.9, and associated SSL certificate fingerprints. Security teams are advised to correlate logs for any connections to the domain or IP, particularly from endpoints with gaming-related software installed. Employee and user awareness training should emphasize the risks of entering credentials on unfamiliar sites, even if they appear visually similar to legitimate services. Regular audits of domain registrations and SSL certificates can help identify spoofed or lookalike domains before they are weaponized.
Data Coverage
Signaux de sécurité
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 13/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
VirusTotal
1 → 3
-
État du domaine
Accessible → Inaccessible
-
État du domaine
Inaccessible → Accessible
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
2 technologies identifiées avec une forte confiance
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of gacorlek12.com · checked Jun 27, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif