सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 17। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@bluehost.com. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
2 months
Reports sent
1
Latest case ID
PD-20260608-EED884
Current status
Observed active at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

cooltentregas[.]com[.]br

“Not Acceptable!”

धमकी भरा फैसला गंभीर 100/100 साक्ष्य स्कोर
उपलब्धता ढका हुआ · पहुंच योग्य क्लोकिंग जांच के माध्यम से पहुंच योग्यता देखी गई
वायरस का कुल पता लगाना: 17/91 ब्रांड प्रतिरूपण: Generic अंतिम ज्ञात सक्रिय
OTX: 4 refs 08/06/2026 Generic 1 Report Sent
रिपोर्ट सारांश

cooltentregas.com.br — ढका हुआ · पहुंच योग्य. ब्रांड प्रतिरूपण: Generic; घोटाले का प्रकार: Impersonation. साक्ष्य सारांश: VirusTotal 17/91 (Abusix, alphaMountain.ai, BitDefender, Certego, Chong Lua Dao); URLScan malicious verdict; cloaking observed; PhishDestroy score 100/100. रजिस्ट्रार: Bluehost.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
5602273F
स्कोर
100/100

This domain, cooltentregas.com.br, is flagged as a high-risk phishing site designed to mimic legitimate retail or e-commerce platforms. Analysis indicates the site operates as a fake storefront, likely targeting users with fraudulent product listings or checkout pages to harvest payment card details and personal credentials. No specific brand impersonation or crypto drainer kit signatures have been confirmed, but the infrastructure aligns with generic phishing frameworks used for financial fraud. Infrastructure analysis reveals concrete technical indicators: the domain is detected by 3 out of 95 security vendors on VirusTotal, registered through Bluehost, and resolves to the IP address 162.241.60.110. The domain was created on June 08, 2026, an anomalous future date suggesting potential registry manipulation or data entry error. The SSL certificate is issued by Let's Encrypt (R12), a common choice for both legitimate and malicious sites. The domain appears on one security blocklist and is actively blocked by PhishDestroy, though it remains accessible at the time of assessment. Current status confirms the domain is still active, posing an ongoing threat to users. Response actions should include immediate blocking of the domain and IP at the network level, as well as monitoring for related infrastructure reuse. The remaining risk is classified as high due to the domain's operational status, low detection rate, and lack of takedown. Users are advised to avoid interaction with the site, verify retailer authenticity through official channels, and report any suspicious activity to relevant security teams for further investigation.

VirusTotal
VirusTotal
17 det.
OTX references
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
समाप्त या असत्यापित -34d
देखी गई स्थिति
ढका हुआ · पहुंच योग्य
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज VirusTotal 17 / 91 यूआरएलक्वेरी checked — no detections recorded फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स 4 community references सीएफ रडार no data URLScan capture संग्रहित रिपोर्ट URLScan verdict malicious डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है not parsed स्क्रीनशॉट 2 captures · 2 sources चेन पुनर्निर्देशित करें जांच नहीं की गई

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
11/12

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict दुर्भावनापूर्ण score 100 Phishing report ↗
सर्वर / ASN Apache · AS31898 Oracle Corporation
IP प्रतिष्ठा abuse score 0/100 0 reports checked 12/08/2026
रजिस्ट्रार Bluehost BR(BR)
IP पता 162.241.60.110 BR
भौगोलिक स्थानBR Vinhedo, BR
नेटवर्कAS31898 · Unified Layer
रिवर्स IPviewdns.info → rapiddns.io →
Cloaking Cloaking Detected Content divergence · score 1/6
unavailable: raw=proxy_error; http=0; via=http_proxy; error=HTTPConnectionPool(host='161.123.5.41', port=5090): Max retries exceeded with url: http://cooltentregas.com.br/ (Caused
checked 15/08/2026
Elapsed Since First Report 40 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: ढका हुआ · पहुंच योग्य.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला08/06/2026
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
TLS Fingerprint
TLS Observationvalid from 14/04/2026scanned 09/06/2026
TLS SAN Domainsdedetizadoracambe.com.brwww.cacavazamentolondrina.cooltentregas.com.brwww.chaveirolondrina.com.cooltentregas.com.brwww.cmdracoes.cooltentregas.com.brwww.dedetizadoracambe.cooltentregas.com.brwww.dedetizadoraemlondrina.cooltentregas.com.brwww.dmulleracessorios.cooltentregas.com.brwww.emsuasmaos.cooltentregas.com.brwww.energiasolaregeradores.cooltentregas.com.brwww.genniferjovialadvocacia.cooltentregas.com.brwww.jardinagemlondrina.cooltentregas.com.brwww.jornaldepontagrossa.cooltentregas.com.brwww.londriserralherialondrina.cooltentregas.com.brwww.pedreirolondrina.cooltentregas.com.brwww.pizzanopizzaria.cooltentregas.com.br+4
Case ID
पेज शीर्षक
Not Acceptable!
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता Let's Encrypt / R12
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

17 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 15 detections
अब्यूसिक्स
alphaMountain.ai
BitDefender
Certego
Chong Lua Dao
Cluster25
साइरेडार
ईएसईटी
Forcepoint ThreatSeeker
Fortinet
G-Data
Lionic
MalwareURL
SOCRadar
सोफोस
VIPRE
वेबरूट

साक्ष्य और बाहरी रिपोर्टें

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260608-EED884 Recipient: abuse@bluehost.com
Page title stored with report: 电子邮件设置| 验证
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 21.2 KB

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/cooltentregas.com.br"
  title="PhishDestroy threat report for cooltentregas.com.br"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>