MALICIOUS — CRITICAL
stellar[.]org[.]im
The domain stellar.org.im is currently classified as a generic phishing site with a high risk rating and an active status as of 12 July 2026.
- VirusTotal
- 13/91
- Blocklists
- No stored match
- उपलब्धता
- अंतिम ज्ञात सक्रिय · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
stellar.org.im — अंतिम ज्ञात सक्रिय (HTTP 200). साक्ष्य सारांश: VirusTotal 13/91 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Forcepoint ThreatSeeker); PhishDestroy score 99/100. रजिस्ट्रार: LINODE (ASN: 63949).
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Evidence Analysis
The domain stellar.org.im is currently classified as a generic phishing site with a high risk rating and an active status as of 12 July 2026. The page title returned by the web server is identical to the domain name, offering no additional context about the intended victim or lure. No visual or functional analysis of the page content is available, so the assessment relies exclusively on the observed infrastructure and reputation signals. Infrastructure analysis shows the domain resolves to the IP address 172.105.47.42, which belongs to the Akamai Connected Cloud network (AS63949) and is hosted by Linode. The nameservers ns1.in1.fcomet.com and ns2.in1.fcomet.com are also associated with the same provider. The web server reports HTTP status 200 and serves content over a Let’s Encrypt certificate (R13). Technical fingerprints indicate a WordPress site powered by MySQL, PHP, Bootstrap, jQuery, jQuery Migrate, and LiteSpeed, with HTTP/3 enabled. Reputation data reinforces the malicious classification. VirusTotal scans have flagged the domain in 13 out of 95 security engines, and Gridinsoft assigns a trust score of 0 out of 100. The domain appears on a single public blocklist and is explicitly blocked by PhishDestroy, confirming that at least one anti‑phishing consortium has taken remediation action. These signals collectively point to a deliberately crafted phishing infrastructure rather than an accidental misconfiguration. Defenders should treat stellar.org.im as a confirmed phishing threat. Immediate mitigation steps include adding the domain and its associated IP address to network blocklists, configuring DNS sinkholing for the identified nameservers, and monitoring for any outbound connections to the hosting ASN. Because the exact phishing payload and targeted brand remain unknown, continuous traffic analysis and endpoint telemetry are recommended to capture any credential‑harvesting attempts that may originate from this host.
डेटा कवरेज12 recorded checks
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 8 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Popular CSS framework for responsive, mobile-first web development.
High-performance web server compatible with Apache configurations.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
“Blacklist from EtherAddressLookup Database”
Victim safety and official reportingImmediate actions and verified reporting channels
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।