theglamscientist[.]com
Verifica phishing e sicurezza per theglamscientist.com
“Home - The Glam Scientist”
theglamscientist.com — Raggiungibile · accesso limitato (HTTP 403). Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 12/94 (ADMINUSLabs, alphaMountain.ai, Cluster25, CRDF, CyRadar); URLQuery 3 alerts; PhishDestroy score 88/100. Registrar: GoDaddy.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain is flagged as a credential harvesting phishing site targeting users through deceptive branding under the guise of a legitimate service, 'The Glam Scientist.' Analysis indicates an elevated risk level due to its confirmed malicious activity, including the collection of sensitive user credentials through fraudulent login portals or forms. The infrastructure and page title suggest an attempt to mimic a professional or personal brand to increase trust and victim compliance. Infrastructure analysis reveals the domain was registered on March 04, 2026, through GoDaddy.com, LLC, and resolves to the IP address 192.254.189.112, hosted on AS46606 (Unified Layer) in the United States. The SSL certificate is issued by Let's Encrypt (R12), a common choice for both legitimate and malicious sites. Security vendors on VirusTotal flagged this domain as malicious, with 12 out of 95 engines detecting it as phishing-related. The domain appears on at least one security blocklist and was previously blocked by enterprise-grade filtering systems. Despite its current offline status, historical data confirms its use in phishing campaigns. Mitigation against credential harvesting phishing domains like this requires a multi-layered approach. Network-level protections should include blocking the domain and its associated IP address (192.254.189.112) at firewalls and DNS resolvers. Endpoint security solutions should be updated to detect and prevent access to the domain, leveraging the available detection signatures from security vendors. Users who may have interacted with the site should be instructed to reset credentials for any accounts accessed during the exposure window, particularly if passwords were reused across services. Security teams are advised to monitor for indicators of compromise (IOCs) related to this domain, including logs for connections to the IP or SSL certificate thumbprints, and to review authentication logs for unusual activity.
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | theglamscientist.com |
malicious | Sinkholed |
| DNS4EU | theglamscientist.com |
malicious | Sinkholed |
| Hagezi Threat Feed | theglamscientist.com |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie · 12 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Most widely used open-source HTTP server software.
Google's bot-challenge service. On phishing sites, used to appear legitimate and filter out automated scanners.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Conversion-tracking pixel by Meta — logs page views and custom events to Facebook/Instagram ad accounts.
www.facebook.comAnalisi di VirusTotal
Prove archiviate
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of theglamscientist.com · checked Mar 4, 2026
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo