sergheymagala[.]net
“Home - Serghey Magalà”
sergheymagala.net — Accessible · accès restreint (HTTP 403). Résumé des preuves: VirusTotal 3/91 (CRDF, Forcepoint ThreatSeeker, desenmascara.me); PhishDestroy score 71/100. Bureau d’enregistrement: Hosting Concepts.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Analysis of sergheymagala.net confirms its classification as an active credential phishing site. The domain was registered on February 21, 2026, through Hosting Concepts B.V. d/b/a Registrar.eu and currently resolves to IP address 35.214.176.12, hosted on Google LLC infrastructure (AS19527) in the Netherlands. The site returns an HTTP 202 status, which may indicate an attempt to evade automated detection or simulate a legitimate service in an intermediate state. The page title, 'Home - Serghey Magalà,' does not explicitly reveal the targeted brand or service, though the inclusion of a personal name may suggest an attempt to impersonate an individual or entity for social engineering purposes. Infrastructure analysis reveals the use of WordPress, MySQL, PHP, and Nginx, hosted on SiteGround with nameservers ns1.siteground.net and ns2.siteground.net.
The presence of jQuery Migrate and YouTube embeds may be leveraged to enhance legitimacy or deliver malicious payloads. The SSL certificate is issued by Let's Encrypt (R13), a common choice for both legitimate and malicious sites due to its accessibility and automation. Detection data indicates low but consistent suspicion: Gridinsoft assigns a trust score of 15/100, and the domain appears on one security blocklist (PhishDestroy). One of 93 security vendors on VirusTotal flags the domain as malicious, though the specific nature of the threat remains unconfirmed without further sandbox analysis. The domain remains active as of July 25, 2026.
Defenders should treat this domain as high-risk for credential harvesting or personal data theft. Recommended actions include blocking the domain and IP at the network perimeter, monitoring for connections to 35.214.176.12, and alerting users to avoid interaction. Further investigation into the WordPress instance may reveal additional indicators, such as plugin vulnerabilities or malicious JavaScript.
Signaux de sécurité
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 11 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Tag management system for deploying marketing and analytics tags.
tagmanager.google.comWeb analytics service tracking website traffic and user behavior.
marketingplatform.google.comAnalyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of sergheymagala.net · checked Mar 2, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif