theprogressivegroup[.]starbearingcentre[.]com
“Account Security Check”
theprogressivegroup.starbearingcentre.com — Contenuto non disponibile (HTTP 502). Riepilogo delle prove: VirusTotal 15/95 (ADMINUSLabs, BitDefender, CyRadar, ESET, Forcepoint ThreatSeeker); PhishDestroy score 95/100. Registrar: Hosting Concepts.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Analysis of theprogressivegroup.starbearingcentre.com shows a domain created on 7 May 2025 that is currently taken offline. The domain resolves to IP address 178.16.53.131, which belongs to AS202412 owned by Omegatech LTD and is geolocated in the Netherlands. Authoritative name servers ns1.regery.net, ns2.regery.net, and ns3.regery.net all point to the same hosting infrastructure, indicating a single‑point hosting arrangement. The only visible page title is “Account Security Check,” a phrasing commonly employed in credential‑harvesting schemes to lure victims into submitting login information.
The site uses a Let’s Encrypt R12 certificate, providing transport encryption but offering no validation of the entity behind the domain. Gridinsoft assigned a trust score of 0 out of 100, reflecting an extremely low confidence in the domain’s legitimacy. The domain is listed on one security blocklist, PhishDestroy, which has already classified it as malicious. VirusTotal reports that 15 of 95 scanning engines flagged the domain, further corroborating malicious intent.
Registration was performed through Hosting Concepts B.V. d/b/a Registrar.eu, a registrar that appears in multiple abuse reports. No additional intelligence such as OTX or Safe Browsing entries is provided. Given the recent creation date, zero trust score, blocklist presence, multiple AV detections, and a page title that directly targets account security, the domain should be treated as a high‑confidence phishing indicator. Defensive recommendations include adding both the domain and its resolved IP address to outbound and inbound deny lists, monitoring the domain’s DNS records for any re‑activation, and ensuring that user‑facing security solutions warn against unsolicited “Account Security Check” prompts that reference this URL.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Registration: starbearingcentre.com
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain starbearingcentre.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo