Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@regtons.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
rmbnagpur[.]com
“Not Acceptable!”
rmbnagpur.com — ढका हुआ · पहुंच योग्य. ब्रांड प्रतिरूपण: Adobe; घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 19/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 2 alerts; URLScan malicious verdict; cloaking observed; PhishDestroy score 100/100. रजिस्ट्रार: Gransy, s.r.o.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain, rmbnagpur.com, is flagged as an active credential harvesting phishing site posing an elevated risk to individuals and organizations. Analysis indicates the infrastructure is designed to mimic legitimate financial or corporate login portals, tricking users into submitting sensitive credentials such as usernames, passwords, and multifactor authentication codes. The threat type is classified as generic_phishing with a focus on credential theft, likely targeting customers of regional banks or financial services. Infrastructure analysis reveals the domain was registered on October 6, 2025, through Gransy, s.r.o., a registrar frequently associated with high-risk domains. It resolves to the IP address 162.241.123.17, which has been linked to multiple phishing campaigns in recent months. Detection engines on VirusTotal flag the domain as malicious, with 16 out of 95 security vendors marking it as phishing or fraudulent. The SSL certificate is issued by Let's Encrypt, a common choice for threat actors due to its free and automated issuance process. Gridinsoft's trust score for the domain is 0/100, further corroborating its malicious nature. Additional blocklists and threat intelligence feeds have also identified this domain as part of ongoing phishing operations. To mitigate risks associated with rmbnagpur.com, organizations should immediately block the domain and its resolving IP address (162.241.123.17) at the network perimeter using firewalls, DNS filters, or web proxies. End-users who may have interacted with the site should be instructed to reset credentials for any accounts entered on the page, particularly those associated with financial services. Security teams should monitor for indicators of compromise, including unusual login attempts or unauthorized transactions. If the domain is impersonating a specific brand or institution, affected entities should issue public advisories to warn their customers. Continuous monitoring of related infrastructure, such as newly registered domains under the same registrar or IP range, is recommended to identify potential follow-up campaigns.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें · 1 identified
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of rmbnagpur.com · checked Jun 28, 2026
साक्ष्य और बाहरी रिपोर्टें
PD-20260628-AD5AB5 Recipient: abuse@regtons.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।