Vai al rapporto di sicurezza
⚠️
Questo dominio è stato segnalato come dannoso
Motori di sicurezza che segnalano un rilevamento: 13. Blocklist pubbliche che segnalano una corrispondenza: 2. Prestare estrema cautela: non inserire credenziali o informazioni personali.
Sicurezza del dominio e intelligence sulle minacce

superbonusmonster[.]com

Verifica phishing e sicurezza per superbonusmonster.com

Verdetto di minaccia Critico Punteggio delle prove 100/100
Disponibilità Ammantato · raggiungibile Raggiungibilità osservata attraverso controlli di cloaking
Segnali di rischio
Rilevamenti VirusTotal: 13/92 Corrispondenze della blocklist memorizzate: 2 Ultimo attivo conosciuto
13/92 VT OTX: 16 refs 15/06/2026 2 Blocklists Cloaking NL NL
Riepilogo del rapporto

superbonusmonster.com — Ammantato · raggiungibile (HTTP 302). Riepilogo delle prove: VirusTotal 13/92 (Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. Registrar: Spaceship.

L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.

Evidence Analysis

Stored analysis · 13/07/2026 Ref 5D98FCDE

Analysis of superbonusmonster.com shows a recently created (19 May 2026) domain registered through Spaceship, Inc. The zone is delegated to Cloudflare nameservers agustin.ns.cloudflare.com and leia.ns.cloudflare.com, and the site serves HTTPS using a Let’s Encrypt R13 certificate while returning HTTP 200 for the root request. The domain resolves to IP 38.180.120.239, an address hosted in the Netherlands and assigned to 3NT SOLUTIONS LLP. VirusTotal reports that 13 of 92 scanning engines flagged the host, indicating the presence of malicious payloads or behavior. AlienVault OTX has incorporated the domain in 16 separate threat‑intel pulses, and the address appears on three public blocklists, reinforcing its reputation as a malicious resource. The current operational status is active. No public information is available regarding the specific phishing content, target brand, or credential‑capture mechanisms employed by the site; the landing page has not been publicly dissected. Defenders should block both the domain and its resolving IP at network perimeter devices, enforce DNS filtering, and update local threat‑intel feeds to include the associated IOCs. Continuous monitoring of DNS queries for the domain and related sub‑domains is advised, as is periodic re‑scanning to detect any changes in payload or hosting infrastructure.

VirusTotal
VirusTotal
13 det.
OTX references
Certificato TLS
Let's Encrypt / R13 9d
Età
3 mo New
Stato osservato
Ammantato · raggiungibile 302
PhishDestroy
Elenco da eliminare
In elenco
Copertura dei dati12 recorded checks
VirusTotal 13 / 92 URLQuery non controllato PhishStats non controllato OTX 16 community references CF Radar no data URLScan capture not submitted URLScan verdict verdetto non disponibile Blocchi DNS non controllato TLS valid certificate, 9d WHOIS 3 mo old Screenshot non rilevato Catena di reindirizzamenti non sondato

Pipeline di risposta alle minacce

Scoperta
Checks
Reports
Disponibilità
7/9

Stato della lista di blocco pubblica

Analisi dei domini

Dominio
Server / ASN nginx · AS58061 Scalaxy B.V.
Reputazione IP abuse score 0/100 0 reports checked 12/07/2026
Indirizzo IP 38.180.120.239 NL
PosizioneNL Amsterdam, NL
ReteAS58061 · 3NT SOLUTIONS LLP
RegistrazioneCreato 19/05/2026 (82d · New)
Stato HTTP302 Found (Temporary)
Cloaking Cloaking Detected Referer split · score 1/6
redirect: raw=redirect_302; http=302; via=https_proxy; location=https://click-monster.cyou/; server=nginx
server: nginx
checked 09/08/2026
Dettagli tecniciDNS, SAN SSL, timestamp
Rilevato per la prima volta15/06/2026
Nameserverleia.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 20/05/2026scanned 12/07/2026
TLS SAN Domainswww.superbonusmonster.com
ICANN OVERSIGHT

Accreditamento e contesto RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Nulla viene inviato automaticamente.
Segnala questo dominio Invia le prove e contribuisci a proteggere gli altri

Analisi di VirusTotal

13 / I fornitori di sicurezza 92 hanno contrassegnato questo dominio
View on VT
Last analyzed Previous stored snapshot: 1 detection
Gridinsoft
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.

Europol
Trova il canale di segnalazione ufficiale per il tuo paese dell'UE
National police directory
Attenzione ai truffatori che promettono il recupero dei fondi! I criminali possono contattare nuovamente le vittime fingendo di essere investigatori, avvocati o agenti di recupero. Non pagare commissioni anticipate né condividere credenziali. Scopri di più sulle frodi relative ai sussidi di recupero →

Segnalalo alle autorità locali

Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.

Elenco di 97 paesi
Bozza assistita dall'intelligenza artificiale: i dettagli dell'incidente vengono elaborati dal fornitore di intelligenza artificiale Controllalo e invialo tu stesso
Incorpora questo rapportoRead-only HTML widget
HTML · IFRAME

Incorpora questo rapporto

Condividi queste informazioni sulle minacce sul tuo sito web o sul tuo blog

embed.html
<iframe
  src="https://phishdestroy.io/it/embed/domain/superbonusmonster.com"
  title="PhishDestroy threat report for superbonusmonster.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Una lettera di ringraziamento molto sincera

Generatore di bozze satiriche

Destinatario
Contesto delle tariffe

Bozza satirica. Gli importi delle tariffe sono stime; non si afferma che siano attribuibili esattamente a questo dominio.