Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@omegatech.sc.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
zoemartinfleuriste[.]eu
“Domain Default page”
zoemartinfleuriste.eu — Belum terverifikasi. Jenis penipuan: Crypto Drainer. Ringkasan bukti: VirusTotal 7/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. Registrar: Dynadot.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, zoemartinfleuriste.eu, is flagged as an active high-risk crypto drainer phishing site. Analysis indicates it is designed to harvest wallet credentials and drain cryptocurrency assets from victims by impersonating legitimate services. The threat type is classified as a crypto drainer, a specialized form of phishing that targets digital wallet connections and transaction approvals, often leading to irreversible financial losses. Infrastructure analysis reveals the domain resolves to the IP address 158.94.211.185 and was registered on May 24, 2026, through an unnamed registrar, suggesting a likely fraudulent or short-term registration pattern. The domain is currently active and presents a generic 'Domain Default page' as its page title, a common tactic to evade initial scrutiny while hosting malicious scripts. Detection metrics show 3 out of 95 security vendors on VirusTotal flag the domain as malicious, while it appears on three distinct security blocklists. The SSL certificate is issued by Let's Encrypt (YR2), a legitimate provider often abused by threat actors to lend false credibility to phishing sites. Mitigation against this crypto drainer requires immediate action from both end-users and network administrators. Users should avoid interacting with the domain, particularly when prompted to connect wallets or approve transactions. Wallet software should be configured to reject connections from untrusted domains, and hardware wallets should be used for high-value transactions to prevent unauthorized access. Network-level protections, such as DNS filtering or IP-based blocking of 158.94.211.185, are recommended to prevent access to the domain. Security teams should monitor for related indicators, including the domain's creation date and associated IP, to identify potential infrastructure reuse in future campaigns.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Analisis VirusTotal
Bukti & Laporan Eksternal
PD-20260524-6AA223 Recipient: abuse@omegatech.sc Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive