allegro[.]oferta328016[.]click
“Allegro Lokalnie - Wystaw ogłoszenia za darmo i kupuj od osób z Twojej okolicy”
allegro.oferta328016.click — Контент недоступен. Сводка доказательств: VirusTotal 15/91 (Chong Lua Dao, Forcepoint ThreatSeeker, Fortinet, G-Data, Kaspersky); Spamhaus DBL_PHISH; PhishDestroy score 100/100. Регистратор: Global Domain Group.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis indicates that the domain allegro.oferta328016.click was registered on 2026-07-16 through Global Domain Group LLC and is currently active. DNS resolution points to IP address 104.21.67.173, and the authoritative nameservers are naomi.ns.cloudflare.com and pranab.ns.cloudflare.com, indicating use of Cloudflare’s DNS infrastructure. VirusTotal has flagged the domain in 7 of 91 scanned security engines, reinforcing a malicious rating consistent with its classification as a generic_phishing threat. The high risk level assigned reflects the potential for credential harvesting or other phishing‑related activity. No additional content analysis, such as page title or observed payload, is available at this time, so the exact phishing vector remains unknown. Defenders should block or quarantine any network traffic to this domain, add the associated IP address to deny lists, and monitor for related DNS queries or HTTP requests originating from internal hosts. Ongoing observation of VirusTotal updates and any emerging threat intel is recommended.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: oferta328016.click
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain oferta328016.click behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиGoogle Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com 100% уверенностиDetectify is an automated scanner that checks your web application for vulnerabilities.
detectify.com 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчеты
PD-20260717-D3A559 Recipient: abuse@globaldomaingroup.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание