Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
agrosabor[.]ec
“Agrosabor S.A.”
Osservazione memorizzata
Contrasto dei titoli osservato
agrosabor.ec was registered on 2025-01-08 and is currently hosted on a Hetzner server in Germany (AS24940). The domain resolves to 167.235.182.68 and uses the name servers ns17.hostingcolor.com, ns18.hostingcolor.com, and ns19.hostingcolor.com. The site presents a page titled “Agrosabor S.A.” and serves content over HTTPS with a Let’s Encrypt certificate. Technical fingerprints show an Apache HTTP server running PHP, with front‑end libraries including Bootstrap, jQuery, Modernizr, and Google Maps integration. The domain appears on one security blocklist and has been flagged by PhishDestroy. VirusTotal records 15 of 95 scanned security vendors marking the site as malicious. Independent trust scoring services assign a Gridinsoft score of 0/100 and a Scamadviser score of 1/100, indicating extremely low credibility. The MX record points to agrosabor.ec itself, which is consistent with a minimal email setup often used by fraudulent operators. Analysis classifies the site as a cryptocurrency‑focused brand‑impersonation campaign targeting the brand “base”. The page mimics legitimate branding while directing visitors toward illicit cryptocurrency transactions. The combination of a recent registration date, low trust scores, and the presence of a known blocklist entry suggests an active high‑risk operation. Publicly available information does not reveal the exact content of the fraudulent pages or the payment mechanisms employed, leaving the full scope of the scam uncertain. Defenders should block the domain at network perimeters, update email filters to reject messages referencing agrosabor.ec, and monitor DNS queries for the associated IP address and name servers. Continuous re‑scanning with multi‑engine services is advised to capture any changes in the site's behavior. Organizations using the “base” brand should issue user warnings and enforce strict verification of any cryptocurrency requests originating from this domain.
Record della segnalazione inviata
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260318-8B74CF- Titolo della pagina acquisita
- Agrosabor S.A.
- Artefatto PDF
- Prova in PDF
Testo completo delle prove
Acceptable Use Policy (AUP): The domain agrosabor.ec is engaged in phishing activities, which are explicitly prohibited under your AUP. This constitutes a direct violation of the policy against fraud and deception.
Terms of Service (TOS): The continued operation of this domain violates your TOS, which reserves the right to suspend or terminate services for any activities that are illegal or harmful, including phishing.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, including phishing schemes that deceive users into providing sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): This law makes it illegal to use electronic communications to execute a scheme to defraud, which applies to phishing operations.
Anti-Phishing Consumer Protection Act: This legislation aims to combat phishing by imposing penalties on those who engage in deceptive practices to obtain personal information.
Regulatory Note: Failure to take immediate action against this domain may result in liability for facilitating illegal activities, and could expose your organization to regulatory scrutiny and potential penalties. It is imperative to comply with your own policies and applicable laws to mitigate these risks.
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | maps.googleapis.com/maps-api-v3/api/js/64/4d/intl/es_419/common.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | maps.googleapis.com/maps-api-v3/api/js/64/4d/common.js |
audit | Hunting_JS_WebAssembly |
| OpenDNS | agrosabor.ec |
phishing | Phishing Block |
| Hagezi Threat Feed | agrosabor.ec |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti · sincronizzate il 10/08/2026
Cronologia del rilevamento
-
VirusTotal
stage4.timeline.transition
Tecnologie
6 tecnologie identificate con alta affidabilità
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of agrosabor.ec · checked Mar 18, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo