hofmemorabilia.ebaymclaren-austin.eventshouse.app
“ebay Austin - Registration”
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@ukservers.com.
The latest stored availability evidence still shows the domain reachable; 8 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
hofmemorabilia.ebaymclaren-austin.eventshouse.app — 마지막으로 알려진 활성 (HTTP 307). 브랜드 사칭: EBay; 사기 유형: Impersonation. 증거 요약: VirusTotal 18/89 (alphaMountain.ai, AlphaSOC, BitDefender, CRDF, CyRadar); URLQuery 5 alerts; 1 external blocklist match (Phishunt); CF Radar malicious; PhishDestroy score 100/100.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
증거 요약
hofmemorabilia.ebaymclaren-austin.eventshouse.app is a subdomain of eventshouse.app. PhishDestroy first observed the hostname on Sep 12, 2026. Stored content metadata identifies EBay as the apparent target. The captured page title is “ebay Austin - Registration”. Stored page analysis classifies the content as impersonation. Campaign clustering links the hostname to the Unknown kit. Current evidence score: 100/100 (critical).
Positive findings are stored from 4 sources: VirusTotal, Phishunt, Cloudflare Radar, and URLQuery. VirusTotal recorded 18 detections among 89 engines: alphaMountain.ai, AlphaSOC, BitDefender, CRDF, CyRadar, ESET, Emsisoft, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, Lionic, MalwareURL, Netcraft, SOCRadar, Sophos, VIPRE, Webroot on Sep 20, 2026 at 02:16 UTC. Phishunt listed the hostname in the separate external-blocklist snapshot on Sep 20, 2026 at 14:20 UTC. Cloudflare Radar classified the hostname as malicious and placed it in the phishing category; its verdict timestamp was not retained. URLQuery recorded 5 threat-system alerts on Sep 12, 2026 at 14:31 UTC. Non-positive and contextual checks: ScamAdviser assigned a trust score of 15/100 (Very Likely Unsafe); no observation timestamp was retained. Google Safe Browsing returned no flag on Sep 19, 2026 at 22:00 UTC. URLScan completed without a malicious verdict (score 0) on Sep 13, 2026 at 03:30 UTC.
HTTP 307 was recorded on Sep 20, 2026 at 10:15 UTC. At collection time, the hostname resolved to 77.74.193.106 on AS42831 (UKSERVERS-AS UK Dedicated Servers Limited, GB). The recorded endpoint location is Coventry, GB. The stored server header is LiteSpeed. DOM analysis on Sep 12, 2026 at 22:20 UTC returned 88/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. TLS metadata lists Let's Encrypt / YR2 as the certificate issuer with validity through Nov 12, 2026; checked Sep 12, 2026 at 16:02 UTC.
The content indicators and 4 positive source findings support the current EBay-themed impersonation classification.
네트워크 보안 인텔리전스
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | ebaymclaren-austin.eventshouse.app |
malicious | Sinkholed |
| Cloudflare DNS | ebaymclaren-austin.eventshouse.app |
malicious | Sinkholed |
| Cloudflare DNS | hofmemorabilia.ebaymclaren-austin.eventshouse.app |
malicious | Sinkholed |
| OpenDNS | hofmemorabilia.ebaymclaren-austin.eventshouse.app |
phishing | Phishing Block |
| DNS4EU | hofmemorabilia.ebaymclaren-austin.eventshouse.app |
malicious | Sinkholed |
Forensic History & Detection Timeline
-
Threat First Observed Sep 12, 2026 · 16:26 UTCDomain ingestion complete. Initial state is marked as alive pointing to IP
77.74.193.106.
위협 대응 Pipeline
공개 차단 목록 상태
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
LiteSpeed
Scanner note: redirect: raw=redirect_307; http=307; via=https_proxy; location=https://hofmemorabilia.ebaymclaren-austin.eventshouse.app/microsite/index; server=LiteSpeed
위협 인텔리전스 교차 확인 · source references
기술 · 2 identified
VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of hofmemorabilia.ebaymclaren-austin.eventshouse.app · checked Sep 12, 2026
증거 및 외부 보고서
PD-20260912-782CF7 Recipient: abuse@ukservers.com Abuse notice text as sent to the provider
Policy Violations: Illegal Activities: Active phishing operation targeting victims Fraud & Deception: Impersonation of legitimate services Identity Theft: Collection of credentials under false pretenses Applicable Laws (Unknown): International Anti-Cybercrime Regulations Budapest Convention on Cybercrime Universal Fraud Prevention Laws Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws. Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.