allegrolokalnie[.]oferta328016[.]click
“Allegro Lokalnie - Wystaw ogłoszenia za darmo i kupuj od osób z Twojej okolicy”
allegrolokalnie.oferta328016.click — Контент недоступен. Сводка доказательств: VirusTotal 16/91 (Chong Lua Dao, Forcepoint ThreatSeeker, Fortinet, G-Data, Kaspersky); Spamhaus DBL_PHISH; PhishDestroy score 100/100. Регистратор: Global Domain Group.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain allegrolokalnie.oferta328016.click indicates that it was registered on July 16, 2026 through Global Domain Group LLC and is currently active. The authoritative name servers naomi.ns.cloudflare.com and pranab.ns.cloudflare.com resolve the domain to the IP address 104.21.67.173, which is hosted on a Cloudflare network. VirusTotal scans show that 7 of 91 security vendors have flagged the domain as malicious, supporting the classification of a generic phishing infrastructure. The available intelligence does not include a content snapshot of the site, so the exact phishing lure or credential‑stealing mechanism remains unknown. However, the combination of recent registration, Cloudflare hosting, and multiple vendor detections suggests a deliberately provisioned phishing operation targeting users who might be lured by the domain’s similarity to legitimate services. Defenders should consider adding the domain to blocklists, enforce DNS filtering for the IP range, and monitor for outbound connections to 104.21.67.173. Continuous re‑evaluation is recommended as further observables, such as payload samples or victim reports, become available.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: oferta328016.click
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain oferta328016.click behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиGoogle Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com 100% уверенностиDetectify is an automated scanner that checks your web application for vulnerabilities.
detectify.com 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчеты
PD-20260717-957C0E Recipient: abuse@globaldomaingroup.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание