prenblog[.]com
“prenblog.com”
Résumé des preuves
Analysis of prenblog.com indicates this domain was established as a phishing infrastructure on February 21, 2026, registered through Internet Domain Service BS Corp. The domain resolved to IP 162.248.160.45, hosted in Germany by FORNEX, and used Nginx as its web server technology. Nameservers ns1.littlebigdns.com through ns4.littlebigdns.com were configured, suggesting a pattern consistent with other malicious domains leveraging the same DNS provider. The page title returned was identical to the domain name, prenblog.com, offering no immediate indication of a targeted brand or service, though the exact content remains unanalysed. As of July 24, 2026, the domain is offline, returning an HTTP 200 status prior to takedown.
Detection vendors flagged this domain on VirusTotal, with 13 of 93 security engines classifying it as malicious. AlienVault OTX records show the domain appearing in 15 threat intelligence pulses, further corroborating its association with phishing activity. The domain is listed on at least one security blocklist, and Gridinsoft assigned a trust score of 0/100, reinforcing its high-risk classification. Defenders should treat this domain as confirmed malicious infrastructure.
Blocklist the domain and its resolving IP at perimeter security controls. Monitor for any re-registration or changes in hosting, particularly if the same nameserver pattern or registrar is reused. While the specific phishing campaign remains unidentified, the domain’s detection history and infrastructure characteristics align with known phishing operations. No further brand or scam type details are available at this time.
Data Coverage
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | prenblog.com |
malicious | Sinkholed |
| DNS4EU | prenblog.com |
malicious | Sinkholed |
| Hagezi Threat Feed | mandarv.com |
malicious | Sinkholed |
| DNS4EU | mandarv.com |
malicious | Sinkholed |
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of prenblog.com · checked Mar 2, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif