belnano1843[.]direct
belnano1843.direct — Непроверенный. Сводка доказательств: VirusTotal 5/91 (alphaMountain.ai, CRDF, Fortinet, Gridinsoft, SOCRadar); Spamhaus DBL_PHISH; PhishDestroy score 88/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain belnano1843.direct is currently classified as a generic phishing infrastructure and remains active as of the report date, July 25, 2026. Registration data indicates that the domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar that has been associated with a range of malicious domains in prior threat intelligence. Technical probing shows the domain resolves to Cloudflare nameservers alice.ns.cloudflare.com and peter.ns.cloudflare.com, suggesting the use of a CDN service to obscure the true hosting location. An HTTP request to the root URL returns a 301 redirect status, which is a common tactic to forward victims to a secondary landing page or to evade simple URL‑based filters.
The domain appears on a single security blocklist and is explicitly blocked by the PhishDestroy mitigation service, reinforcing the view that it is being used for fraudulent activity. VirusTotal records indicate that the domain has been examined by 91 antivirus and URL scanning engines, none of which presently flag it, but the absence of detections does not constitute a safety assurance. No additional data such as SSL certificate details, page title, or associated brand identifiers were provided, leaving the exact phishing payload and targeted victims undefined.
Defenders should continue to monitor the domain, enforce blocklist rules that include it, and consider adding it to internal URL filtering policies. Network sensors should flag any outbound connections to the domain, and incident response teams should treat any user‑initiated traffic to belnano1843.direct as suspicious, requiring verification before credential submission. Ongoing reconnaissance of the underlying IP address, if disclosed, and periodic re‑scanning with VirusTotal or similar services are recommended to capture any future changes in the domain’s threat posture.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-14 02:39:20 UTC
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of belnano1843.direct · checked Jul 25, 2026
Анализ конфигурации сайта
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание