omnipool[.]top
“Attention Required! | Cloudflare”
Analysis of www.omnipool.top shows a domain created on 12 March 2026 and immediately pointed at the Cloudflare edge IP 188.114.97.3 (AS13335, United States). The domain uses Cloudflare’s DNS service (maisie.ns.cloudflare.com, tosana.ns.cloudflare.com) and presents the generic Cloudflare “Attention Required!” page title, indicating that the site is currently offline. The SSL certificate is issued by Google Trust Services under the WE1 root, which is a legitimate certificate authority and therefore does not imply trustworthiness of the hosted content. Registration was performed through Gname.com Pte. Ltd., a registrar commonly used for both legitimate and malicious registrations.
The domain is classified as a generic phishing campaign with a specific investment‑scam focus, and it has been listed by the PhishDestroy blocklist. VirusTotal records show that 13 of 91 security vendors have flagged the domain as malicious, and it appears on one additional security blocklist. Technologies detected include Cloudflare Browser Insights and the standard Cloudflare reverse‑proxy stack, which are often leveraged by threat actors to hide origin infrastructure. The combination of a recent registration date, use of a widely trusted CDN, a legitimate‑looking SSL certificate, and multiple vendor detections strongly suggests malicious intent despite the current offline status.
Uncertainty remains regarding the exact payload or phishing landing page, as no content has been captured. Defenders should continue to block the domain at network perimeter, monitor DNS queries for re‑registration, and consider adding the IP address to threat‑intel feeds. Ongoing observation of related Cloudflare‑protected domains registered through the same registrar may reveal a broader campaign.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources · synchronisé le 10/08/2026
Chronologie de détection
Observations enregistrées par ordre chronologique.
-
VirusTotal
VirusTotal : 0 → 1
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of omnipool.top · checked Mar 12, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif