o-redirecting[.]com
Résumé des preuves
Analysis as of July 25, 2026 shows that o-redirecting.com was registered through Tucows Domains Inc. on December 15, 2025 and is currently taken offline. The domain is delegated to Cloudflare’s authoritative name servers (amit.ns.cloudflare.com and dana.ns.cloudflare.com) and resolves to the IPv6 address 2a06:98c1:3121::3, which belongs to AS13335 Cloudflare, Inc., geographically located in the United States. No SSL certificate is associated with the host, indicating that the site does not serve HTTPS traffic. The domain appears on one security blocklist and is actively blocked by PhishDestroy.
Independent reputation scoring from Gridinsoft assigns a trust score of 0 out of 100, reflecting an extremely poor reputation. VirusTotal has scanned the domain, with two of ninety‑three security vendors flagging it as malicious, corroborating the presence of hostile activity. The observed phishing kit is identified as an Airdrop Scam, a tool commonly employed for banking‑related credential harvesting. The scam type is recorded as Banking Phishing, although no specific financial institution is disclosed in the available intelligence.
Because the site is offline, page‑level details such as title, content, or login forms have not been captured, leaving the exact visual lure and credential‑capture mechanisms uncertain. Defenders should immediately block o-redirecting.com at the DNS and network layers, add the associated IPv6 address to firewall deny lists, and monitor the Cloudflare ASN for any related domains or re‑activation attempts. Threat‑intelligence feeds should be updated to include the domain, its registrar, and hosting details to improve detection across endpoint and email protection solutions. Users should be warned that unsolicited messages promising airdrops or crypto giveaways that direct to this domain are likely malicious and should be ignored.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif