uk-verno[.]com
“Верно – Закон о возврате средств”
Résumé des preuves
PhishDestroy identifies uk-verno.com as an active credential harvesting domain designed to mimic legitimate UK-based services. The site employs a deceptive interface to trick users into submitting sensitive login credentials, including email addresses and passwords. No specific brand or drainer kit association has been confirmed at this stage, though the domain's quick setup and phishing infrastructure suggest a focus on high-volume credential theft campaigns targeting UK internet users.
This domain exhibits several concerning technical indicators. Domain creation occurred on August 13, 2025, with resolution to IP address 192.250.226.92. VirusTotal scans returned 0 detections out of 95 engines as of the time of analysis, indicating low detection by antivirus platforms despite its malicious intent. The domain is registered through NAMECHEAP INC and utilizes a Let's Encrypt SSL certificate to appear legitimate. It currently appears on one security blocklist and is actively blocked by PhishDestroy. Notably, the domain's recent creation and low detection profile suggest it may be part of a rapidly evolving campaign.
uk-verno.com remains active and poses a credible threat to users who may encounter it through phishing emails, compromised advertisements, or typo-squatted links. Response actions include continuous monitoring by PhishDestroy and inclusion on its blocklist. However, the domain's low VirusTotal detection rate highlights the need for caution, as traditional antivirus solutions may not yet recognize the threat. Users are strongly advised to avoid interacting with this domain and to report any encounters to their security teams or through PhishDestroy's reporting channels. The risk remains high due to the domain's active status and potential for rapid expansion into additional campaigns.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260331-379EDB- Titre de la page capturée
- Верно – Закон о возврате средств
- Artefact PDF
- Preuve PDF
Fondement juridique
Texte intégral des preuves
Policy Violations: Domain Registration Agreement prohibits hacking, misuse of domain to conduct attacks, scam and fraudulent activities; AUP allows immediate suspension
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | maps.googleapis.com/maps-api-v3/api/js/64/6d/common.js |
audit | Hunting_JS_WebAssembly |
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of uk-verno.com · checked Mar 31, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif