aerodromeauthorization[.]com
“SECURITY CHECK”
संग्रहीत अवलोकन
देखा गया शीर्षक अंतर
साक्ष्य सारांश
The domain aerodromeauthorization.com is currently active and classified as a high‑risk brand‑impersonation operation targeting the Aerodrome brand. The site presents a page titled “SECURITY CHECK”, which is commonly used in credential‑harvesting flows. The domain was registered on August 17 2025 through Ultahost, Inc., within the typical lifecycle of malicious infrastructure.
Infrastructure analysis shows the domain resolves to IP address 82.25.35.148, which belongs to AS21859 operated by Zenlayer Inc. The IP geolocates to the United Kingdom. DNS resolution is served by Cloudflare nameservers addilyn.ns.cloudflare.com and rudy.ns.cloudflare.com, suggesting the attackers are leveraging Cloudflare’s CDN to hide origin infrastructure. No TLS certificate is associated with the domain, and the HTTP response is a 302 redirect, indicating active redirection behavior.
Reputation services flag the domain as malicious: Scamadviser assigns a trust score of 26 / 100, Gridinsoft reports 0 / 100, and the domain appears on five security blocklists, including PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura. VirusTotal indicates that 1 of 95 security vendors has flagged the domain, providing limited but corroborating evidence. The combination of a brand‑impersonation label, lack of encryption, and redirection behavior aligns with typical credential‑stealing campaigns.
Defenders should treat aerodromeauthorization.com as hostile. Immediate actions include adding the domain and its resolving IP to block lists, configuring DNS sinks or firewall rules to prevent connection attempts, and monitoring for similar registration patterns. Because the exact content beyond the page title has not been publicly disclosed, analysts should continue to sample the site for potential payloads or credential collection mechanisms. Ongoing observation of the associated Cloudflare nameservers may reveal additional malicious domains that share the same infrastructure.
Data Coverage
सुरक्षा संकेत
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026
6 निगरानी वाले बाहरी स्रोत कोई मिलान नहीं
पहचान समयरेखा
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
डोमेन स्थिति
पहुँच योग्य नहीं → पहुँच योग्य
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।