Vai al rapporto di sicurezza
⚠️
Questo dominio è stato segnalato come dannoso
Motori di sicurezza che segnalano un rilevamento: 21. Prestare estrema cautela: non inserire credenziali o informazioni personali.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@pointer.gr. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
2 months
Reports sent
1
Latest case ID
PD-20260611-740C19
Current status
Observed active at latest stored check
Sicurezza del dominio e intelligence sulle minacce

officemodels[.]have-fun[.]gr

“ΑΡΧΙΚΗ - Office Models”

Verdetto di minaccia Critico Punteggio delle prove 100/100
Disponibilità Ammantato · raggiungibile Raggiungibilità osservata attraverso controlli di cloaking
Rilevamenti VirusTotal: 21/91 URLQuery threat systems: 9 alerts Tipo di truffa: Brand Impersonation Ultimo attivo conosciuto
11/06/2026 1 Report Sent
Riepilogo del rapporto

officemodels.have-fun.gr — Ammantato · raggiungibile. Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 21/91 (ADMINUSLabs, Criminal IP, AILabs (MONITORAPP), alphaMountain.ai, BitDefender); URLQuery 9 alerts; CF Radar malicious; cloaking observed; PhishDestroy score 100/100.

L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.

Riepilogo delle prove
CRITICO
Rif.
D3CFDF8F
Punteggio
100/100

This domain, officemodels.have-fun.gr, is flagged for brand impersonation targeting Aave, a decentralized finance protocol. Analysis indicates the site was designed to mimic legitimate Aave interfaces, likely to exploit users seeking crypto lending or borrowing services. The page title, ΑΡΧΙΚΗ - Office Models, does not align with Aave’s branding, suggesting an attempt to disguise malicious intent under a generic facade. No direct evidence of a crypto drainer kit was observed, but the infrastructure and impersonation tactics are consistent with credential harvesting or fraudulent transaction schemes. Infrastructure analysis reveals the domain resolves to IP address 185.25.23.170, hosted on AS209150 (TH.PAPAMICHAIL VAINAS - G.PSALTAKIS G.P) in Greece. Security vendors on VirusTotal flagged the domain, with 20 out of 95 engines detecting malicious activity. The domain appears on one security blocklist and was blocked by at least one threat intelligence feed. The SSL certificate is issued by Let’s Encrypt (R13), a common choice for both legitimate and malicious sites due to its free and automated issuance process. No registrar or creation date details were provided, but the use of a subdomain under have-fun.gr may indicate an attempt to evade detection or leverage a compromised hosting environment. As of the latest assessment, officemodels.have-fun.gr has been taken offline, reducing immediate risk to users. However, the domain’s infrastructure and historical activity suggest a pattern of transient malicious hosting. Users who interacted with the site should monitor for unauthorized transactions, particularly in crypto wallets linked to Aave or other DeFi platforms. Organizations should update blocklists to include the domain and its resolving IP to prevent future access. Given the elevated risk level, continued vigilance is advised, as threat actors may re-establish similar infrastructure under new domains or IPs.

VirusTotal
VirusTotal
21 det.
URLQuery
URLQuery
9 threat alerts
CF Radar
Malevolo
URLScan
URLScan
Certificato TLS
Scaduto o non verificato -30d
Età
8.5 yr
Stato osservato
Ammantato · raggiungibile
PhishDestroy
Elenco da eliminare
In elenco
Reports Sent
1
Copertura dei dati VirusTotal 21 / 91 URLQuery 9 threat-system alerts PhishStats non controllato OTX no community references CF Radar provider verdict: malicious URLScan capture rapporto memorizzato URLScan verdict Analisi completata Blocchi DNS non controllato TLS Scaduto o non verificato WHOIS 103 mo old Screenshot 4 captures · 3 sources Catena di reindirizzamenti non sondato
Informazioni sulla sicurezza di rete
Threat Detection Systems 9 alerts
Detection System Indicator Verdict Alert
DigiCert UltraDNS www.officemodels.gr malicious Sinkholed
Hagezi Threat Feed www.officemodels.gr malicious Sinkholed
DNS4EU www.officemodels.gr malicious Sinkholed
OpenDNS www.officemodels.gr phishing Phishing Block
Cloudflare DNS www.officemodels.gr malicious Sinkholed
Cloudflare DNS officemodels.have-fun.gr malicious Sinkholed
DNS4EU officemodels.have-fun.gr malicious Sinkholed
OpenDNS officemodels.have-fun.gr phishing Phishing Block
Hagezi Threat Feed officemodels.have-fun.gr malicious Sinkholed
CF Cloudflare Radar Verdict Malevolo
Phishing

Pipeline di risposta alle minacce

Scoperta
Checks
Reports
Disponibilità
13/14
Sent Report Recorded
Stored sent-report record for domain registrar, hosting provider, 1 abuse contact
abuse@pointer.gr
11/06/2026

Stato della lista di blocco pubblica

Acquisizione salvata

Analisi dei domini

Dominio
URLScan Verdict Analisi completata score 0 report ↗
Server / ASN nginx · AS209150 POINTER TH.PAPAMICHAIL VAINAS - G.PSALTAKIS G.P, GR
Reputazione IP abuse score 0/100 0 reports checked 12/08/2026
Registrar (base domain) Sconosciuto
Contatto abusiabuse@pointer.gr
Indirizzo IP 185.25.23.170 GR
PosizioneGR Kilkís, GR
ReteAS209150 · TH.PAPAMICHAIL VAINAS - G.PSALTAKIS G.P
Registration (base domain)have-fun.gr · Creato 21/02/2018
Cloaking Cloaking Detected Content divergence · score 1/6
unavailable: raw=proxy_error; http=0; via=http_proxy; error=HTTPConnectionPool(host='152.232.15.126', port=8294): Max retries exceeded with url: http://officemodels.have-fun.gr/ (C
checked 17/08/2026
Elapsed Since First Report 3 days
Cosa conteggiamo Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Ammantato · raggiungibile.
Cosa contiene ogni rapporto I record archiviati dei report in uscita possono fare riferimento a prove disponibili in quel momento, come verdetti dei fornitori, dati di registrazione, dettagli di hosting, classificazioni o screenshot. Questa pagina non deduce l'esatto carico utile consegnato, la ricevuta, la conferma o l'azione da parte di un destinatario.
Dettagli tecniciDNS, SAN SSL, timestamp
Rilevato per la prima volta11/06/2026
DOM Analysisanalyzed 11/06/2026score 100/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://officemodels.have-fun.gr/
TLS Fingerprint
TLS Observationvalid from 19/04/2026scanned 11/06/2026
TLS SAN Domainsofficemodels.grwww.officemodels.have-fun.gr
Case ID
Titolo della pagina
ΑΡΧΙΚΗ - Office Models
Certificato TLS
Scaduto o non verificato · Emesso da Let's Encrypt / R13
Tecnologie · 10 identified
WordPress
CMS Blogs

WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.

wordpress.org Confidenza al 100%
MySQL
Databases

MySQL is an open-source relational database management system.

mysql.com Confidenza al 100%
PHP
Programming languages

PHP is a general-purpose scripting language used for web development.

php.net Confidenza al 100%
Yoast SEO
SEO WordPress plugins

Yoast SEO is a search engine optimisation plugin for WordPress and other platforms.

yoast.com Confidenza al 100%
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org Confidenza al 100%
Slider Revolution
Widgets Photo galleries

Slider Revolution is a flexible and highly customisable slider.

www.sliderrevolution.com Confidenza al 100%
OWL Carousel
JavaScript libraries

OWL Carousel is an enabled jQuery plugin that lets you create responsive carousel sliders.

owlcarousel2.github.io Confidenza al 100%
jQuery Migrate
JavaScript libraries

Query Migrate is a javascript library that allows you to preserve the compatibility of your jQuery code developed for versions of jQuery older than 1.9.

github.com Confidenza al 100%
jQuery
JavaScript libraries

jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.

jquery.com Confidenza al 100%
Google Analytics
Analytics

Google Analytics is a free web analytics service that tracks and reports website traffic.

google.com Confidenza al 100%
Detected via Cloudflare Radar · Wappalyzer engine
Segnala questo dominio Invia le prove e contribuisci a proteggere gli altri

Analisi di VirusTotal

21 / I fornitori di sicurezza 91 hanno contrassegnato questo dominio
View on VT
Last analyzed Previous stored snapshot: 20 detections
ADMINUSLabs
Criminal IP
AILabs (MONITORAPP)
alphaMountain.ai
BitDefender
Chong Lua Dao
Cluster25
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Kaspersky
Lionic
MalwareURL
SOCRadar
Sophos
VIPRE
Webroot
Analisi della configurazione del sito
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
/wp-content/uploads/wc-logs/ /wp-content/uploads/woocommerce_transient_files/ /wp-content/uploads/woocommerce_uploads/ /*?add-to-cart= /*?*add-to-cart= /wp-admin/ /wp-admin/admin-ajax.php

Dati e relazioni esterne

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260611-740C19 Recipient: abuse@pointer.gr
Page title stored with report: ΑΡΧΙΚΗ - Office Models
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 49.6 KB

Questo sito ti ha influenzato in qualche modo?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.

Europol
Trova il canale di segnalazione ufficiale per il tuo paese dell'UE
National police directory
Attenzione ai truffatori che promettono il recupero dei fondi! I criminali possono contattare nuovamente le vittime fingendo di essere investigatori, avvocati o agenti di recupero. Non pagare commissioni anticipate né condividere credenziali. Scopri di più sulle frodi relative ai sussidi di recupero →

Segnalalo alle autorità locali

Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.

Elenco di 97 paesi
Bozza assistita dall'intelligenza artificiale: i dettagli dell'incidente vengono elaborati dal fornitore di intelligenza artificiale Controllalo e invialo tu stesso

Verifica qualsiasi dominio

Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica

Scansiona ora

Segnala un tentativo di phishing

Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità

Segnala

Feed in tempo reale sulle minacce

Segnalazioni recenti di phishing e modifiche osservate della disponibilità

Monitora

Rimani informato, rimani al sicuro

Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo

Feed in tempo reale sulle minacce Contesta questo annuncio
HTML · IFRAME

Incorpora questo rapporto

Condividi queste informazioni sulle minacce sul tuo sito web o sul tuo blog

embed.html
<iframe
  src="https://phishdestroy.io/it/embed/domain/officemodels.have-fun.gr"
  title="PhishDestroy threat report for officemodels.have-fun.gr"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>