Analysis of the domain nolboost.com indicates it is an active phishing site currently under investigation. Registered on July 25, 2026, through Fewmoretaps OU operating under the registrar Trustname.com, the domain resolves to the IP address 82.25.120.177. Infrastructure analysis reveals the use of nameservers horizon.dns-parking.com and orbit.dns-parking.com, a configuration commonly associated with low-cost or bulk-registered domains. As of July 30, 2026, the domain remains operational and has been flagged by PhishDestroy, appearing on at least one security blocklist.
No detections were recorded by the 91 vendors that scanned the domain on VirusTotal, though the absence of flags does not confirm safety. The domain's registration age—just five days old at the time of this report—aligns with patterns observed in short-lived phishing campaigns. The registrar, Trustname.com, has been previously linked to domains involved in fraudulent activity, though no direct attribution to malicious intent can be made solely based on registrar choice. Defenders are advised to treat nolboost.com as a high-risk domain pending further analysis.
Network-level blocking is recommended for organizations, particularly those in sectors frequently targeted by credential harvesting schemes. Monitoring for connections to the IP 82.25.120.177 may reveal additional malicious domains hosted on the same infrastructure. The exact content or brand impersonation remains unconfirmed, as no specific page title or target brand was provided in available intelligence. Further investigation into the domain's hosting provider and associated autonomous system is warranted to assess the broader threat landscape.