Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is op_ct@cosmotown.com.
The latest stored availability evidence still shows the domain reachable; 10 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
openvoicehub[.]info
“One moment, please...”
openvoicehub.info — Non vérifié. Résumé des preuves: VirusTotal 3/91 (Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 71/100. Bureau d’enregistrement: TuringSign.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, openvoicehub.info, is currently flagged as a generic phishing threat and remains active as of the report date of August 06, 2026. The domain was created on April 27, 2026, and is registered through TuringSign Inc. d/b/a Cosmotown. Infrastructure analysis reveals that the domain resolves to the IP address 103.120.48.245. Notably, the nameservers for the domain are listed as not found, which may indicate misconfiguration or recent changes in DNS hosting.
The domain appears on one security blocklist and is actively blocked by PhishDestroy, a security vendor. VirusTotal has scanned the domain with 91 vendors, and currently zero flag it as malicious; however, the absence of detections is not proof that the domain is safe. The registrant information is not detailed beyond the registrar, and the hosting provider and ASN for the IP address are not specified in the available intelligence. The page title and specific content of the website have not been analyzed, so exact details of what the phishing attempt entails are not confirmed.
Defenders should treat this domain with caution due to its active status, its presence on a blocklist, and its classification as a generic phishing threat. Recommended actions include monitoring network traffic for connections to 103.120.48.245, reviewing email logs for messages referencing openvoicehub.info, and adding the domain to internal denylists for email and web filtering to prevent potential user exposure. Further investigation is advised to determine the hosting provider details and to analyze the website content for specific phishing tactics, as the current intelligence does not provide enough information to assess the full scope of the threat.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
PD-20260806-88F0B4 Recipient: op_ct@cosmotown.com Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif