spark-online[.]online
“Почти готово! Домен успешно привязан к хостингу”
spark-online.online — Contenu indisponible. Usurpation de l'identité de la marque : Spark; Type d'arnaque : Impersonation. Résumé des preuves: VirusTotal 4/91 (alphaMountain.ai, Forcepoint ThreatSeeker, LevelBlue, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 88/100. Bureau d’enregistrement: Registrar of Domain Na….
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain spark-online.online was registered through REG.RU LLC on July 30 2026 and resolves to the IPv4 address 37.140.192.187. Authoritative name servers are ns1.hosting.reg.ru and ns2.hosting.reg.ru, both belonging to the same registrar. The only visible page element is a title rendered in Russian – "Почти готово! Домен успешно привязан к хостингу" – which translates to a hosting‑provisioning notice and does not disclose any user‑facing functionality.
No additional page content, SSL/TLS certificate details, HTTP status codes, Safe Browsing verdicts, or OTX entries are present in the current intelligence set, leaving the transport‑layer security posture and broader threat context uncertain. VirusTotal records indicate that 95 scanning engines have examined the domain without raising detections; however, the lack of detections is not evidence of safety. The domain is listed on a single security blocklist, with PhishDestroy explicitly marking it as malicious, confirming that at least one reputable anti‑phishing feed associates the domain with phishing activity. No evidence of known phishing kits, compromised credentials, or brand‑specific lures has been observed.
Defenders should treat spark-online.online as a potential phishing indicator: block outbound connections to 37.140.192.187, add the domain to URL filtering and email gateway deny lists, and monitor DNS records for any changes. Continuous re‑evaluation of VirusTotal, sandbox analyses, and open‑source threat feeds is advised to capture possible escalation or content changes. Given the domain’s creation only two days prior to the report date, its brief lifespan aligns with fast‑turnaround phishing campaigns, warranting high‑priority detection and remediation measures.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 1 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of spark-online.online · checked Aug 2, 2026
Données factuelles et rapports externes
PD-20260802-2130A8 Recipient: abuse@reg.ru Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif