app-altura[.]org
“app-altura.org | 504: Gateway time-out”
app-altura.org — Непроверенный. Сводка доказательств: VirusTotal 2/93 (Gridinsoft, SOCRadar); 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 78/100. Регистратор: Dynadot.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain app-altura.org was registered on February 23, 2026 through Dynadot LLC and is currently hosted behind Cloudflare's network (nameservers duke.ns.cloudflare.com and olivia.ns.cloudflare.com). DNS resolution returns the IP address 172.67.192.27, which is owned by AS13335 Cloudflare, Inc. and geolocated to the United States. The site presents a Let's Encrypt E7 SSL certificate, confirming that TLS is active, but the HTTP response returns a 404 status and the page title captured is "app-altura.org | 504: Gateway time-out," indicating that the web service is offline or misconfigured at the time of observation.
VirusTotal scans show that two out of ninety‑three security vendors have flagged the domain, and it appears on four independent blocklists, specifically PhishDestroy, MetaMask, ScamSniffer, and SEAL. These detections collectively classify the domain as a generic phishing infrastructure, consistent with its elevated risk rating. Observable evidence does not reveal the specific lure or credential‑harvesting page content; the only available artifacts are the registration metadata, hosting details, SSL certificate, and blocklist presence.
Defenders should block the domain at network perimeter and DNS resolvers, monitor for any future re‑activation of the IP address, and incorporate the domain into threat‑intel feeds. Continuous re‑scanning with multi‑vendor services is advised to capture any changes in detection counts, and any anomalous traffic to the Cloudflare IP should be logged for correlation with credential‑theft attempts.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание