Aller au rapport de sécurité
⚠️
Ce domaine a été signalé comme malveillant
Moteurs de sécurité signalant une détection : 8. Listes de blocage publiques signalant une correspondance : 2. Faites preuve d’une extrême prudence – ne saisissez pas d’informations d’identification ou d’informations personnelles.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@omegatech.sc. The latest stored availability evidence still shows the domain reachable; 9 days has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
9 days
Reports sent
1
Latest case ID
PD-20260731-BFD590
Current status
HTTP 200 at latest stored check
Sécurité des domaines et renseignements sur les menaces

sessor359[.]com

Analyse phishing et sécurité de sessor359.com

“Secure Payments”

Verdict de menace Critique 84/100 score de preuve
Disponibilité Dernier actif connu Dernière observation d'accessibilité stockée
Signaux de risque
Détections VirusTotal : 8/91 Spamhaus DBL: DBL_SPAM Correspondances de la liste de blocage stockée : 2 URLQuery threat systems: 1 alert Type d'arnaque : Impersonation Domaine jeune : 12 jours Dernier actif connu
8/91 VT URLQuery: 1 threat alerts 31/07/2026 2 Blocklists Impersonation 1 Report Sent NL NL
Résumé du rapport

sessor359.com — Dernier actif connu (HTTP 200). Type d'arnaque : Impersonation. Résumé des preuves: VirusTotal 8/91 (alphaMountain.ai, BitDefender, Forcepoint ThreatSeeker, Fortinet, G-Data); URLQuery 1 alert; Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 84/100. Bureau d’enregistrement: Dominet (HK).

L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.

Evidence Analysis

Stored analysis · 31/07/2026 Ref 07DE7303 84/100 CRITIQUE

Analysis of sessor359.com indicates an active phishing domain registered on July 27, 2026, through Dominet (HK) Limited. The domain currently resolves to IP address 91.92.241.145 and uses Cloudflare nameservers (chad.ns.cloudflare.com, norah.ns.cloudflare.com). As of July 31, 2026, two of ninety-one security vendors on VirusTotal flag this domain as malicious.

It appears on one security blocklist and is blocked by PhishDestroy. No brand target or specific phishing kit is confirmed in available intelligence; the site content remains unanalyzed beyond its classification as a generic phishing domain. Defenders should treat this domain as high-risk infrastructure.

Recommended actions include adding the domain and its resolving IP to web gateways, email filters, and endpoint protection rules. Monitor for new detections or blocklist additions, as the domain is less than five days old and may still be evolving. If internal telemetry shows connections to 91.92.241.145, investigate for credential theft or malware delivery attempts.

VirusTotal
VirusTotal
8 det.
URLQuery
URLQuery
1 threat alert
URLScan
URLScan
Certificat TLS
Let's Encrypt
Âge
12d Very New!
Statut observé
Dernier actif connu 200
PhishDestroy
DestroyList
Répertorié
Reports Sent
1
Couverture des données12 recorded checks
VirusTotal 8 / 91 URLQuery 1 threat-system alert PhishStats pas vérifié OTX no community references CF Radar scan completed URLScan capture rapport stocké URLScan verdict Analyse terminée Blocs DNS pas vérifié TLS valid certificate, 86d WHOIS 12d old Capture d'écran 3 captures · 3 sources Chaîne de redirection non sondé
Renseignements sur la sécurité réseau
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU sessor359.com malicious Sinkholed

Processus de réponse aux menaces Pipeline

Découverte
Checks
Reports
Disponibilité
12/13
Sent Report Recorded
Stored sent-report record for registrar Dominet (HK) Limited, hosting provider, 2 abuse contacts
abuse@omegatech.scdomainabuse@service.aliyun.com
31/07/2026

Statut de la liste de blocage publique

Capture enregistrée

Titre de la page
Secure Payments
Certificat TLS
Valid transport encryption · Émis par Let's Encrypt · valid for 86 days

Informations sur les domaines

Domaine
URLScan Verdict Analyse terminée score 0 report ↗
Serveur / ASN nginx/1.14.1 · AS202412 OMEGATECH-AS Omegatech LTD, SC
Réputation de l’IP abuse score 0/100 0 reports checked 31/07/2026
Bureau d’enregistrement Dominet (HK) US(US)
Adresse IP 91.92.241.145 NL
LocalisationNL Amsterdam, NL
RéseauAS202412 · Omegatech LTD
EnregistrementCréé 27/07/2026 (12d · Very New!) Expires 27/07/2027
Statut HTTP200
Détails techniquesDNS, SAN SSL, horodatages
Première détection31/07/2026
DOM Analysisanalyzed 31/07/2026score 0/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://sessor359.com/
Serveurs de nomschad.ns.cloudflare.comnorah.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 27/07/2026scanned 31/07/2026
Favicon Hash
Case ID
ICANN OVERSIGHT

Contexte de l’accréditation et du RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Rien n’est envoyé automatiquement.
Technologies · 5 identified
Node.js
Programming languages

Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.

nodejs.org Confiance à 100 %
React
JavaScript frameworks

React is an open-source JavaScript library for building user interfaces or UI components.

reactjs.org Confiance à 100 %
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org Confiance à 100 %
Next.js
JavaScript frameworks Web frameworks

Next.js is a React framework for developing single page Javascript applications.

nextjs.org Confiance à 100 %
Webpack
Miscellaneous

Webpack is an open-source JavaScript module bundler.

webpack.js.org Confiance à 100 %
Detected via Cloudflare Radar · Wappalyzer engine
Signaler ce domaine Envoyez des éléments de preuve et contribuez à protéger les autres

Analyse VirusTotal

8 / Les fournisseurs de sécurité 91 ont signalé ce domaine
View on VT
Last analyzed Previous stored snapshot: 5 detections
alphaMountain.ai
BitDefender
Forcepoint ThreatSeeker
Fortinet
G-Data
Kaspersky
SOCRadar
Sophos

Preuves archivées

Wayback Machine Snapshot
Un instantané historique est disponible pour l’examen des preuves
View Archive
Analyse des performances du site

Google PageSpeed Insights — mobile performance audit of sessor359.com · checked Jul 31, 2026

95
Good
Performance
FCP
0.9s
First Contentful Paint
LCP
2.56s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
58ms
Total Blocking Time
SI
3.99s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Stored Capture Evidence 1 snapshot

Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.

Archived HTTP response HTTP 200
Requested URL: http://sessor359.com/
Final URL: https://sessor359.com/
Secure Payments
Secure payment processing platform.
Réponse
HTTP 200
HTML body
31.7 KB
Compressed
6.9 KB
Links
3 internal · 0 external
Detected technologies
nginxreact
Selected response headers
Server: nginx/1.14.1
Content-Type: text/html; charset=utf-8
X-Powered-By: Next.js
Cache-Control: private, no-cache, no-store, max-age=0, must-revalidate
Content-Encoding: gzip
HSTS: not observed DNSSEC: not observed WAF / firewall: not observed Cloaking flag: not observed
All stored response-header names (10)
ServerDateContent-TypeTransfer-EncodingConnectionVaryLinkX-Powered-ByCache-ControlContent-Encoding
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.

Europol
Trouvez le canal de signalement officiel pour votre pays de l'UE
National police directory
Méfiez-vous des escrocs qui prétendent vous aider à récupérer vos biens ! Les criminels peuvent recontacter leurs victimes tout en se faisant passer pour des enquêteurs, des avocats ou des agents de recouvrement. Ne payez pas de frais initiaux et ne partagez pas vos informations d'identification. En savoir plus sur la fraude liée aux aides à la reprise →

Signalez-le à vos autorités locales

Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.

Annuaire de 97 pays
Brouillon assisté par l'IA : les détails de l'incident sont traités par le fournisseur d'IA Examinez-le et soumettez-le vous-même
Intégrer ce rapportRead-only HTML widget
HTML · IFRAME

Intégrer ce rapport

Partagez ces informations sur les menaces sur votre site web ou votre blog

embed.html
<iframe
  src="https://phishdestroy.io/fr/embed/domain/sessor359.com"
  title="PhishDestroy threat report for sessor359.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Une lettre de remerciement très sincère

Générateur de brouillon satirique

Destinataire
Contexte des frais

Brouillon satirique. Les montants des frais sont des estimations ; aucune attribution exacte à ce domaine n’est affirmée.