Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@trustname.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
afinil[.]com
Verifica phishing e sicurezza per afinil.com
“Buy Cheap Nootropics [Otc] in the Best Modafinil E-Pharmacy - Afinil.com”
afinil.com — Ultimo attivo conosciuto (HTTP 200). Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 4/91 (CRDF, Gridinsoft, Netcraft, SOCRadar); PhishDestroy score 82/100. Registrar: Fewmoretaps OU d/b/a T….
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
This domain, afinil.com, is identified as a credential theft and illicit online pharmacy operation. Analysis indicates the site was designed to harvest payment details and login credentials under the guise of selling nootropics, specifically modafinil, without requiring a prescription. The domain is currently offline, but prior activity suggests it targeted users seeking controlled substances through deceptive e-commerce practices. Infrastructure analysis reveals the domain was registered through Fewmoretaps OU d/b/a Trustname.com on April 28, 2026, and resolved to the IP address 190.115.31.174. It was flagged by 4 of 95 security vendors on VirusTotal and appears on one security blocklist. The domain holds a Gridinsoft trust score of 20/100 and a Scamadviser trust score of 1/100, reflecting its high-risk classification. Technologies detected include WordPress, MySQL, PHP, Yoast SEO Premium, Zendesk, Yotpo Reviews, and Swiper, which are commonly exploited in fraudulent e-commerce setups. The SSL certificate was issued by Let’s Encrypt, a legitimate provider often abused by threat actors to lend false credibility to malicious sites. The domain’s current offline status does not eliminate the risk of future reactivation or migration to a new infrastructure. Organizations and users are advised to monitor for re-emergence under similar naming conventions or IP ranges. Blocking the associated IP (190.115.31.174) and registrar (Fewmoretaps OU) at the network level is recommended to prevent potential re-exposure. Users who interacted with the domain should assume credential compromise and initiate password resets for any accounts used on the site. Financial institutions should be alerted to potential fraudulent transactions linked to this domain.
Copertura dei dati14 recorded checks
Indicatori di sicurezza
Informazioni sulla sicurezza di rete Registrar context
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie · 17 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org Confidenza al 100%Yoast SEO Premium is a search engine optimisation plugin for WordPress and other platforms.
yoast.com Confidenza al 100%Yoast SEO is a search engine optimisation plugin for WordPress and other platforms.
yoast.com Confidenza al 100%Zendesk is a cloud-based help desk management solution offering customizable tools to build customer service portal, knowledge base and online communities.
zendesk.com Confidenza al 100%Swiper is a JavaScript library that creates modern touch sliders with hardware-accelerated transitions.
swiperjs.com Confidenza al 100%Moment.js is a free and open-source JavaScript library that removes the need to use the native JavaScript Date object directly.
momentjs.com Confidenza al 100%Query Migrate is a javascript library that allows you to preserve the compatibility of your jQuery code developed for versions of jQuery older than 1.9.
github.com Confidenza al 100%jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com Confidenza al 100%Google Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com Confidenza al 100%Google Analytics is a free web analytics service that tracks and reports website traffic.
google.com Confidenza al 100%DDoS-Guard is a Russian Internet infrastructure company which provides DDoS protection, content delivery network services, and web hosting services.
ddos-guard.net Confidenza al 100%Automizely creates and manages enterprise-level marketing automation systems including contact and CRM mappings, lead funnels, email nurture, lead-generating pages, and blog posts, and website integrations.
www.automizely.com Confidenza al 100%Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of afinil.com · checked Jun 26, 2026
Dati e relazioni esterneIndependent lookups and source reports
PD-20260428-3EFD45 Recipient: abuse@trustname.com Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.