wisappliances[.]com
“MER-C | Medical Emergency Rescue Committee - Home”
Résumé des preuves
wisappliances.com was observed hosting a brand‑impersonation page that claims to represent the Manta brand. The site returned HTTP 200 and presented the page title “MER‑C | Medical Emergency Rescue Committee – Home”, which does not align with the advertised brand, indicating a mismatch between content and the impersonated target. The domain resolves to IP 103.28.12.79, an address located in Indonesia and assigned to AS58404 (PT Qwords Company International). No TLS certificate was presented, leaving the connection unencrypted.
VirusTotal recorded six detections out of ninety‑five scanned scanners, confirming that multiple security products flag the domain as malicious. Gridinsoft assigned a trust score of 0 / 100, and the domain appears on a single external blocklist, where it is listed by PhishDestroy. Nameserver delegation points to ns1.nyasajob.com and ns2.nyasajob.com, both unrelated to the purported brand, further supporting the fraudulent nature of the infrastructure. The domain was registered through NameCheap on 10 January 2023 and has since been taken offline, but the underlying IP and hosting provider remain active and could be reused for future impersonation campaigns.
At present, the precise content of the site beyond the page title has not been captured, and no additional indicators such as malware payloads or credential‑stealing forms have been reported. Defenders should continue to block the domain and its resolved IP at network perimeters, add the nameservers to threat‑intel feeds, and monitor for any re‑registration or re‑use of the same IP space. Ongoing surveillance of the host AS58404 for new domains serving similar brand‑impersonation content is also advised. Given the confirmed detections and the low trust score, the risk associated with this infrastructure should be treated as elevated until the domain remains offline and no further activity is observed.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif