app[.]estado-online[.]com
“Not Acceptable!”
Riepilogo delle prove
The domain app.estado-online.com was registered on July 18, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and is serviced by the hostgator nameservers ns004.hostgator.net and ns005.hostgator.net. DNS resolution points to the IPv4 address 50.6.184.25, a host that is currently listed on two public blocklists and has been actively flagged by both PhishDestroy and OpenPhish. Google Safe Browsing classifies the site under the social engineering category, indicating that it is being used to harvest credentials or otherwise deceive users.
VirusTotal analysis shows that 18 of 95 security vendors have raised detections against the domain, reinforcing the high‑risk assessment. The combined evidence from registrar data, hosting infrastructure, blocklist presence, Safe Browsing flag, and multi‑vendor detections demonstrates that the domain is actively employed for phishing operations. While no additional details such as page title, SSL certificate, or HTTP response codes are available, the existing indicators are sufficient for defenders to block network resolution, update intrusion detection signatures, and add the domain to internal deny lists.
Continuous monitoring of the IP address 50.6.184.25 and its associated hostgator nameservers is advised, as infrastructure reuse is common in active phishing campaigns. Organizations should also ensure that endpoint protection solutions are refreshed to incorporate the latest vendor detections for this domain.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260722-A9A3E8
Base giuridica
Testo completo delle prove
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (AR):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and AR's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | app.estado-online.com |
malicious | Sinkholed |
| Hagezi Threat Feed | app.estado-online.com |
malicious | Sinkholed |
| OpenDNS | app.estado-online.com |
phishing | Phishing Block |
| DNS4EU | app.estado-online.com |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Stato del dominio
Raggiungibile → Non raggiungibile
Segnalazioni della comunità
Segnalato da 0 membri della comunità; prima osservazione il 22/07/2026
- URL segnalati univoci
- 1
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Registration: estado-online.com
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain estado-online.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie
1 tecnologia identificata con alta affidabilità
Analisi di VirusTotal
Prove archiviate
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of app.estado-online.com · checked Jul 22, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo