kassrabayresortsuites[.]spahotel[.]guru
“Kassandra Bay Resort, Suites & Spa Katsaros - Katsaros (Skiathos), Greece”
kassrabayresortsuites.spahotel.guru — असत्यापित. ब्रांड प्रतिरूपण: Sui; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 18/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, Cluster25, CRDF); CF Radar malicious; PhishDestroy score 100/100. रजिस्ट्रार: Spaceship.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain is classified as high-risk due to brand_impersonation targeting the Sui ecosystem. The infrastructure is designed to deceive users by presenting itself as a legitimate hospitality service, while its primary function appears to be credential harvesting or fraudulent transactions under the guise of a trusted brand. Analysis indicates this is not an isolated incident but part of a broader pattern of domain abuse targeting blockchain and cryptocurrency entities. Infrastructure analysis reveals the domain was registered on April 28, 2026, through Spaceship, Inc., and resolves to IP address 52.29.26.157, hosted on AWS EC2 in the eu-central-1 region (Germany). The SSL certificate is issued by Let's Encrypt (serial number E7), a common choice for both legitimate and malicious domains. Detection metrics show 18 out of 95 security vendors on VirusTotal flag the domain as malicious, and it appears on one security blocklist (PhishDestroy). The page title, 'Kassandra Bay Resort, Suites & Spa Katsaros - Katsaros (Skiathos), Greece,' is crafted to mimic a legitimate resort website, further obscuring its true intent. Mitigation steps for brand_impersonation threats include immediate domain takedown requests to the registrar and hosting provider, citing the high-risk classification and detection metrics. Organizations should monitor for similar domains using variations of their brand name, particularly those registered through high-risk registrars or hosted on cloud infrastructure. End users should verify domain authenticity by cross-referencing official communications and avoiding interaction with unsolicited links. Security teams are advised to block the domain and its resolving IP (52.29.26.157) at the network level, and implement browser-based warnings for employees or customers attempting to access it.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
Registration: spahotel.guru
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For the registrable domain spahotel.guru behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें · 5 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% विश्वासNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वासवायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of kassrabayresortsuites.spahotel.guru · checked Apr 29, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।