esanraxo-530btc[.]it
“esanraxo-530btc.it | 523: Origin is unreachable”
esanraxo-530btc.it — Não verificado. Resumo das evidências: VirusTotal 6/91 (alphaMountain.ai, Bfore.Ai PreCrime, CRDF, Fortinet, Gridinsoft); PhishDestroy score 83/100.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of the domain esanraxo-530btc.it shows that it is currently active and serving HTTP status code 301, indicating a permanent redirect. The domain has been observed by six of ninety‑one security vendors on VirusTotal, which signals malicious intent consistent with a phishing‑related operation. It is listed on a single external blocklist and is actively blocked by PhishDestroy, reinforcing the assessment that the site is being used for illicit credential harvesting.
No additional infrastructure details such as registrar, IP address, ASN, hosting provider, or SSL certificate information have been disclosed in the available intelligence, leaving the broader hosting profile uncharacterized. The page title and any brand‑specific references have not been published, so the exact lure employed by the site cannot be confirmed at this time. The combination of a redirect response, multi‑vendor detection, and inclusion on a phishing‑focused blocklist is sufficient to classify the domain as a high‑risk phishing vector.
Defenders should add esanraxo-530btc.it to network‑level deny lists, enforce URL filtering, and monitor DNS queries for lookups to this name. Continuous re‑evaluation is advised, as further crawling or sandbox analysis may reveal additional payloads, credential‑stealing forms, or affiliate redirects. Until more detailed content is harvested, the recommended mitigation is to block the domain at the perimeter and alert endpoint protection solutions to treat any connections as malicious.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Tecnologias · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo