Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
owgirisleri[.]net
“Barclays.Net”
Résumé des preuves
This domain is flagged as an elevated-risk brand impersonation threat targeting Barclays, a major financial institution. The site was designed to mimic legitimate Barclays login or customer service portals, likely aiming to harvest credentials, personal data, or facilitate unauthorized transactions. Brand impersonation of this nature is a common tactic in financial fraud campaigns, often leveraging urgency or fear to manipulate victims into disclosing sensitive information. Analysis indicates the domain owgirisleri.net was registered on February 21, 2026, through Internet Domain Service BS Corp, a registrar frequently associated with malicious infrastructure. It resolved to the IP address 91.92.240.61, hosted under AS202412 (Omegatech LTD) in Germany. At the time of assessment, 22 out of 95 security vendors on VirusTotal flagged the domain as malicious. The domain appears on one security blocklist and was proactively blocked by at least one threat intelligence feed. The SSL certificate was issued by Let's Encrypt (R13), a common choice for both legitimate and malicious sites due to its free and automated nature. The page title, 'Sorry, the website has been stopped,' suggests the site was taken offline either by the operator or as a result of enforcement action. Organizations and users are advised to implement the following mitigation measures specific to brand impersonation threats. First, block the domain owgirisleri.net and its associated IP address 91.92.240.61 at the network perimeter to prevent access. Second, monitor for any attempts to access this domain or related infrastructure, as this may indicate compromised endpoints or insider threats. Third, deploy email filtering rules to quarantine messages containing the domain or references to Barclays that originate from untrusted sources. Fourth, educate users on recognizing brand impersonation tactics, such as spoofed login pages, urgent requests for account verification, or mismatched URLs. Finally, verify the legitimacy of any communication claiming to be from Barclays by contacting the institution through official channels, and report suspected phishing attempts to the brand’s security team for further investigation.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260214-99DCE4- Titre de la page capturée
- Sorry, the website has been stopped
- Artefact PDF
- Preuve PDF
Texte intégral des preuves
Acceptable Use Policy (AUP): The domain owgirisleri.net is engaged in phishing activities, which directly contravenes the AUP's prohibition against illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing phishing activities constitute a clear breach of this provision.
Applicable Laws (IS):
Act on Electronic Communications No. 81/2003: This law prohibits the use of electronic communications for fraudulent purposes, including phishing.
Criminal Code of Iceland No. 19/1940: Sections 233-236 address fraud and deception, making phishing activities punishable under this code.
Regulatory Note: Non-compliance with your AUP and TOS, as well as applicable laws, may expose your organization to legal liabilities and regulatory scrutiny. Immediate action is advised.
Data Coverage
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | owgirisleri.net |
malicious | Sinkholed |
| OpenDNS | owgirisleri.net |
phishing | Phishing Block |
| DigiCert UltraDNS | owgirisleri.net |
malicious | Sinkholed |
| DNS4EU | owgirisleri.net |
malicious | Sinkholed |
| Quad9 DNS | owgirisleri.net |
malicious | Sinkholed |
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
État du domaine
Inaccessible → Accessible
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif