confirmation-id6586[.]com
Resumo das evidências
Analysis indicates that confirmation-id6586.com was registered on June 12 2026 through Atak Domain Bilgi Teknolojileri A.S. The domain currently appears on a single security blocklist and has been flagged by PhishDestroy as malicious. VirusTotal scans show that 11 of 91 antivirus and URL‑reputation engines returned a positive detection, confirming that the site is associated with phishing‑related behavior. No additional public intelligence such as Safe Browsing, OTX, or SSL certificate details is available, and the hosting IP address, ASN, or geographic location have not been disclosed in the supplied data.
Consequently, the full infrastructure footprint remains unclear. The lack of a documented page title or content analysis means that the specific lure or credential‑capture technique employed by the site cannot be verified at this time. Defenders should treat the domain as high‑confidence malicious based on the multiple independent detections and blocklist entry. Immediate mitigation steps include adding confirmation-id6586.com to URL filtering rules, DNS‑based blocklists, and endpoint web‑proxy deny lists.
Continuous monitoring of surrounding IP ranges and any newly observed sub‑domains is advised, as threat actors often expand infrastructure after initial deployment. Organizations employing email security gateways should ensure that messages containing links to this domain are quarantined or rejected. Because the domain is only a few weeks old, it may not yet be represented in all threat‑intel feeds; therefore, periodic re‑query of VirusTotal and other reputation services is recommended to capture any changes in detection status. In summary, the evidence‑based indicators—registrar information, blocklist presence, PhishDestroy tag, and multiple vendor detections—provide sufficient justification for an elevated risk rating and proactive blocking.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
Status do domínio
Acessível → Inacessível
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo