0exallieviagraria[.]org
0exallieviagraria.org — Контент недоступен. Сводка доказательств: VirusTotal 3/94 (Bfore.Ai PreCrime); PhishDestroy score 76/100. Регистратор: Fewmoretaps OU d/b/a T….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, 0exallieviagraria.org, is flagged as a high-risk generic phishing threat as of July 12, 2026. It was registered on April 24, 2026, through Fewmoretaps OU d/b/a Trustname.com, a registrar sometimes associated with low-reputation domains. The domain uses nameservers zeus.trustname.com and ares.trustname.com, and its SSL certificate was issued by Let's Encrypt R12, which is commonly employed by both legitimate and malicious sites. The domain resolves to IP address 3.71.180.249, hosted in Germany on an AWS EC2 instance in the eu-central-1 region. Analysis of the infrastructure reveals that the web server currently returns an HTTP 403 Forbidden status, indicating that the site may be configured to block direct access or is under active maintenance, possibly to evade automated scanning. VirusTotal data shows that 3 out of 95 security vendors flag this domain as malicious, and it appears on one security blocklist. Additionally, AlienVault OTX includes this domain in one threat intelligence pulse, and the Gridinsoft trust score is 0 out of 100, reinforcing its suspicious nature. Despite these indicators, the exact phishing payload or targeted brand remains uncertain due to the 403 response, which prevents direct content retrieval. The domain's recent registration and association with a known blocklist suggest it is likely part of a credential-harvesting campaign, though the specific lure or impersonated entity has not been confirmed. Defenders should treat this domain as actively malicious, block all traffic to 0exallieviagraria.org at the network level, and monitor for similar patterns involving the Trustname.com registrar and AWS EC2 hosting. Organizations should also review email logs for any messages referencing this domain and educate users to avoid clicking on unsolicited links. Continued monitoring of the domain's HTTP status and DNS records is advised to detect any changes in its behavior or payload delivery.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание