verif-reservaton-trip[.]com
“verif-reservaton-trip.com | 522: Connection timed out”
verif-reservaton-trip.com — Konten tidak tersedia (HTTP 502). Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 13/94 (SOCRadar); URLQuery 2 alerts; PhishDestroy score 93/100. Registrar: Atak Domain.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
PhishDestroy identifies the domain verif-reservaton-trip.com as a credential theft endpoint currently posing an elevated risk. The domain mimics legitimate travel booking platforms to harvest user credentials, with its infrastructure confirmed offline as of the latest assessment.
Analysis reveals the domain was created on April 29, 2025, and is registered through Atak Domain. Security telemetry indicates this domain has been flagged by 1 of 95 VirusTotal vendors, with SSL certification issued by Google Trust Services. The domain resolved to IP address 188.114.97.3, which may have been associated with additional malicious activities prior to its takedown.
The malicious domain is confirmed offline at the time of this advisory. Organizations are advised to implement network and DNS-level blocking for the identified domain and IP address. Users should remain vigilant for similar credential harvesting campaigns, particularly those impersonating travel and hospitality brands. Immediate incident response measures include invalidating credentials submitted to this domain, if applicable, and enhancing monitoring for anomalous authentication patterns linked to the associated infrastructure.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | verif-reservaton-trip.com |
malicious | Sinkholed |
| DNS4EU | verif-reservaton-trip.com |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisis VirusTotal
Bukti & Laporan Eksternal
PD-20260415-996116 Recipient: domain@apiname.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive