Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@globaldomaingroup.com.
The latest stored availability evidence still shows the domain reachable; 3 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
kptlagri[.]com
Analyse phishing et sécurité de kptlagri.com
“KPTL | Poultry & Agribusiness Growth”
kptlagri.com — Dernier actif connu (HTTP 200). Résumé des preuves: VirusTotal 8/91 (alphaMountain.ai, BitDefender, Forcepoint ThreatSeeker, Fortinet, G-Data); PhishDestroy score 84/100. Bureau d’enregistrement: Global Domain Group.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Analysis of kptlagri.com shows the domain is currently active and has been identified as a generic phishing operator. The domain was registered on August 01, 2026 through Global Domain Group LLC and uses the nameservers ns1.globaldomaingroup.com and ns2.globaldomaingroup.com. DNS resolution points to the IP address 104.18.26.246, which is the sole hosting endpoint observed for this indicator. The domain appears on one public security blocklist and has been explicitly blocked by the PhishDestroy sinkhole, confirming that upstream mitigation actions are already in place.
VirusTotal has processed the domain with scans from 91 security vendors; none of the vendors reported a detection at the time of analysis, but the absence of a flag does not constitute a safety assertion. No additional telemetry such as Safe Browsing verdicts, Open Threat Exchange (OTX) references, SSL certificate details, HTTP response codes, trust‑score metrics, page title content, or external evidence links were available for this domain. Consequently, the precise content and target brand of the phishing lure remain unknown, and further investigation is required to characterize the payload and victim‑selection strategy.
Defenders should continue to enforce domain‑level blocking for kptlagri.com across DNS filters, proxy appliances, and endpoint firewalls. Ongoing monitoring of the associated IP address and its hosting provider is recommended, as well as periodic rescans with updated vendor engines to capture any emerging signatures. Adding the domain to internal threat intelligence feeds and sharing the indicator with peer organizations will improve collective detection capability while the investigation remains open.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 6 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org Confiance à 100 %Express is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs.
expressjs.com Confiance à 100 %HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Google Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.
cloud.google.com Confiance à 100 %Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of kptlagri.com · checked Aug 6, 2026
Données factuelles et rapports externes
PD-20260806-2D176C Recipient: abuse@globaldomaingroup.com Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif