सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 6। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@first-colo.net. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
4 months
Reports sent
1
Latest case ID
PD-20260318-16BD93
Current status
HTTP 200 at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

formexora[.]com

formexora.com की फ़िशिंग और सुरक्षा जाँच

“Викачка вигрібних ям Київ | Замовити ☎️ +38 067 007 0068”

धमकी भरा फैसला गंभीर 80/100 साक्ष्य स्कोर
उपलब्धता अंतिम ज्ञात सक्रिय पहले अनुपलब्ध; नवीनतम अवलोकन पहुंच योग्य था
जोखिम संकेत
वायरस का कुल पता लगाना: 6/91 Spamhaus DBL: DBL_SPAM URLQuery threat systems: 1 alert घोटाले का प्रकार: Generic Phishing अंतिम ज्ञात सक्रिय
6/91 VT URLQuery: 1 threat alerts 18/03/2026 04/08/2026 के बाद से अनुपलब्ध है Generic Phishing 1 Report Sent DE DE
रिपोर्ट सारांश

formexora.com — अंतिम ज्ञात सक्रिय (HTTP 200). घोटाले का प्रकार: Generic Phishing. साक्ष्य सारांश: VirusTotal 6/91 (alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar, Fortinet); URLQuery 1 alert; Spamhaus DBL_SPAM; PhishDestroy score 80/100. रजिस्ट्रार: Ultahost.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

Evidence Analysis

Stored analysis · 12/07/2026 Ref 67F3C139

This domain, formexora.com, is flagged as an active phishing site targeting individuals seeking septic tank cleaning services in Kyiv, Ukraine. The page title, 'Викачка вигрібних ям Київ | Замовити ☎️ +38 067 007 0068,' directly references a local service, suggesting an attempt to deceive users into engaging with fraudulent contact details. The domain was registered on September 5, 2025, through Ultahost, Inc., and currently resolves to the IP address 79.133.41.61, hosted in Germany under the same provider. Analysis indicates the site employs a 301 HTTP redirect, a common technique to obscure the final destination or evade detection by automated scanners. Infrastructure analysis reveals the domain uses four nameservers (ns1.ultahost.com, ns2.ultahost.com, ns3.ultahost.com, ns4.ultahost.com) and an MX record pointing to itself, which may facilitate email-based phishing attempts. The SSL certificate is issued by Let's Encrypt, a legitimate but frequently abused certificate authority in phishing campaigns due to its free and automated issuance process. The domain appears on at least one security blocklist, specifically PhishDestroy, and is flagged by 6 out of 95 security vendors on VirusTotal, confirming its malicious classification. The risk level for this domain is assessed as high due to its active status, confirmed presence on security blocklists, and targeting of a specific regional service. Defenders should prioritize blocking the domain and its resolving IP address (79.133.41.61) at the network level. Monitoring for related domains registered through Ultahost or sharing the same nameserver infrastructure may help identify additional threats. While the exact phishing kit or payload remains unconfirmed, the domain's structure and behavior align with generic phishing campaigns designed to harvest personal or financial information under the guise of legitimate services.

VirusTotal
VirusTotal
6 det.
URLQuery
यूआरएलक्वेरी
1 threat alert
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
समाप्त या असत्यापित -240d
आयु
11 mo
देखी गई स्थिति
अंतिम ज्ञात सक्रिय 200
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज12 recorded checks
VirusTotal 6 / 91 यूआरएलक्वेरी 1 threat-system alert फ़िशस्टैट्स checked — no match recorded ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक 14 जाँच पूरी — कोई ब्लॉक नहीं TLS समाप्त या असत्यापित कौन है 11 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
Private YARA rules maps.googleapis.com/maps-api-v3/api/js/64/4d/intl/uk_all/common.js audit Hunting_JS_WebAssembly
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer: Let's Encrypt

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
13/14

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

पेज शीर्षक
Викачка вигрібних ям Київ | Замовити ☎️ +38 067 007 0068
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता Let's Encrypt

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN nginx/1.28.1 · AS214036 Ultahost, Inc.
IP प्रतिष्ठा abuse score 0/100 0 reports checked 14/07/2026
रजिस्ट्रार Ultahost US(US)
IP पता 79.133.41.61 DE
भौगोलिक स्थानDE Frankfurt am Main, DE
नेटवर्कAS214036 · UltaHost Inc
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 05/09/2025 (337d)
Elapsed Since First Report 59 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: अंतिम ज्ञात सक्रिय.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
HTTP स्थिति200
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला18/03/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://formexora.com/
नेमसर्वरns1.ultahost.comns2.ultahost.comns3.ultahost.comns4.ultahost.com
MX Records0 formexora.com
TLS Fingerprint
TLS Observationvalid from 23/04/2025scanned 24/03/2026
TLS SAN Domainscpanel.prostopizza.uzcpcalendars.prostopizza.uzcpcontacts.prostopizza.uzmail.prostopizza.uzprostopizza.uzwebdisk.prostopizza.uzwebmail.prostopizza.uzwww.prostopizza.uz
Case ID
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

6 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 6 detections
alphaMountain.ai
Chong Lua Dao
CRDF
साइरेडार
Fortinet
Gridinsoft
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of formexora.com · checked Mar 28, 2026

82
Needs Work
Performance
FCP
3.21s
First Contentful Paint
LCP
3.71s
Largest Contentful Paint
CLS
0.034
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
4.17s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260318-16BD93 Recipient: abuse@first-colo.net
Page title stored with report: Викачка вигрібних ям Київ | Замовити ☎️ +38 067 007 0068
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें
इस रिपोर्ट को एम्बेड करेंRead-only HTML widget
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/formexora.com"
  title="PhishDestroy threat report for formexora.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।