Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@trustname.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
travelpassphilippine[.]com
“Philippine Airlines Platinum — Travel Like a VIP”
travelpassphilippine.com — Belum terverifikasi. Peniruan identitas merek: Phairlines; Jenis penipuan: Impersonation. Ringkasan bukti: VirusTotal 5/91 (ESET, Fortinet, G-Data, Gridinsoft, Sophos); URLQuery 2 alerts; URLScan malicious verdict; PhishDestroy score 83/100. Registrar: Fewmoretaps OU d/b/a T….
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, travelpassphilippine.com, is flagged as a high-risk phishing site targeting users through brand impersonation of Philippine Airlines. The page title, 'Philippine Airlines Platinum — Travel Like a VIP,' suggests an attempt to lure victims with promises of exclusive travel benefits, a common tactic in credential harvesting campaigns. No crypto drainer kit signatures have been observed, but the site likely functions as a fake login portal to capture sensitive user data such as frequent flyer credentials or payment information. The use of a premium airline brand increases the likelihood of successful social engineering, particularly among travelers seeking loyalty rewards or upgrades. Analysis indicates the domain was registered on June 23, 2026, through Fewmoretaps OU d/b/a Trustname.com, a registrar frequently associated with recently established phishing infrastructure. It resolves to the IP address 188.114.96.3, which has been linked to other malicious domains in recent threat intelligence pulses. As of the latest scan, the domain is detected by 3 out of 95 security vendors on VirusTotal, a relatively low detection rate that may indicate evasion techniques or recent deployment. AlienVault OTX records show the domain appearing in two threat intelligence pulses, further corroborating its malicious classification. No entries were found in Google Safe Browsing at the time of analysis, suggesting the campaign may still be in an early or evasive phase. The domain remains active and poses a significant risk to users who may mistake it for a legitimate Philippine Airlines service. Response actions by hosting providers or registrars have not been observed, and the infrastructure remains operational. Users are advised to verify domain authenticity by cross-referencing official airline communications and avoiding unsolicited links offering VIP travel benefits. Organizations should update blocklists to include this domain and its associated IP, while monitoring for related infrastructure that may emerge from the same registrar or hosting provider. The low detection rate underscores the need for layered security controls, including endpoint protection and user awareness training focused on brand impersonation tactics.
Intelijen Keamanan Jaringan Registrar context
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Bukti & Laporan Eksternal
PD-20260628-3478BD Recipient: abuse@trustname.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive