Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@vmheaven.io.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
bogpls-vdplusss[.]st
“Sitio en Mantenimiento”
bogpls-vdplusss.st — Belum terverifikasi. Jenis penipuan: Generic Phishing. Ringkasan bukti: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); URLQuery 2 alerts; Spamhaus DBL_PHISH; PhishDestroy score 95/100. Registrar: StanCo and Istanco.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Analysis of the domain bogpls-vdplusss.st indicates it was actively used for generic phishing operations before being taken offline on or before July 22, 2026. The domain resolved to the IP address 45.156.87.63, hosted on infrastructure associated with AS51396 (Pfcloud UG) in the Netherlands. At the time of assessment, the page displayed a Spanish-language title, 'Sitio en Mantenimiento,' which may suggest targeting Spanish-speaking users or serving as a placeholder during operational downtime. The domain was registered on March 8, 2026, through StanCo and Istanco, with nameservers ns1.istanco.com and ns2.istanco.com, indicating a potential link to known bulletproof hosting providers.
Technical indicators reveal the use of Ubuntu and Apache HTTP Server, alongside a Let's Encrypt SSL certificate (serial number E8), which is commonly exploited by threat actors to lend legitimacy to malicious sites. Detection data shows the domain was flagged by three of 95 security vendors on VirusTotal, though the specific nature of the phishing content remains unconfirmed. It was also listed on one security blocklist and blocked by PhishDestroy, reinforcing its classification as malicious infrastructure. Gridinsoft assigned a trust score of 0/100, further corroborating its high-risk status.
Defenders should treat this domain as part of a broader phishing campaign, particularly given its hosting on an IP range historically linked to malicious activity. While the exact brand or service impersonated is not identified in available data, the 'maintenance' page title may have been used to deceive users into believing the site was temporarily unavailable, potentially lowering their guard for follow-up attacks. Network defenders are advised to block the domain and its associated IP at the perimeter, monitor for related domains registered through the same registrar or nameservers, and review logs for prior connections to 45.156.87.63.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | bogpls-vdplusss.st |
malicious | Sinkholed |
| DNS4EU | bogpls-vdplusss.st |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 2 identified
Most widely used open-source HTTP server software.
Analisis VirusTotal
Bukti Terarsip
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of bogpls-vdplusss.st · checked Mar 9, 2026
Bukti & Laporan Eksternal
PD-20260308-B99D16 Recipient: abuse@vmheaven.io Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive