bagworkoor[.]lat
“Un instant…”
Rilevamento memorizzato
Avviso di cloaking
- Tipo di cloaking
status_split- Punteggio di cloaking
- 4/6
Riepilogo delle prove
bagworkoor.lat is identified as an active phishing domain with a high-risk status, appearing on four different security blocklists. It has been flagged by 15 out of 95 security vendors on VirusTotal, indicating significant malicious activity associated with this domain. The domain was registered on March 16, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com and currently resolves to IP address 172.67.184.151. The infrastructure behind this domain utilizes technologies such as Cloudflare and HTTP/3, which are commonly employed to enhance performance and security, but can also be exploited by malicious actors to obscure their activities. The presence of Cart Functionality suggests the possibility of fraudulent transactions being facilitated through this domain.
The page title "Un instant…" indicates that the domain may be targeting users in a French-speaking demographic, which could be part of a broader strategy to lure victims into a phishing scheme. Analysis from AlienVault OTX reveals that this domain has been included in 23 threat intelligence pulses, underscoring its relevance in ongoing threat detection efforts. The domain's trust score from Gridinsoft is notably low at 0 out of 100, further confirming its malicious intent.
This domain is actively blocked by security measures from entities such as SEAL, MetaMask, PhishDestroy, and BLP-Malware. Organizations and individuals should remain vigilant against potential phishing attempts associated with bagworkoor.lat. It is advisable to educate users about recognizing phishing attempts and to implement robust email filtering solutions to prevent potential interactions with this domain. Continuous monitoring of threat intelligence feeds is recommended to remain informed about the evolving tactics employed by threat actors associated with this domain.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
8 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
VirusTotal
2 → 15
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of bagworkoor.lat · checked Jul 12, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo