boost-marinade[.]finance
Сводка доказательств
The domain boost-marinade.finance was registered on April 18 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED. It is currently classified as a high‑risk brand‑impersonation site targeting the Marinade brand. The site returns an HTTP 403 status and presents the page title “Just a moment…”, indicating that the landing page is likely a gatekeeper or verification page rather than a fully rendered phishing form. Infrastructure analysis shows the domain resolves to the IP address 104.21.6.170, which belongs to Cloudflare, Inc. in Canada. The domain uses Cloudflare’s DNS service, as evidenced by the authoritative nameservers donald.ns.cloudflare.com and etta.ns.cloudflare.com, and the presence of Cloudflare Browser Insights and HTTP/3 support. The TLS certificate is issued by Let’s Encrypt (E7), confirming the use of a free, automated certificate. Open‑source intelligence flags the domain in one AlienVault OTX pulse and a single security blocklist maintained by PhishDestroy. VirusTotal has recorded three detections out of ninety‑five scanned security vendors, and Gridinsoft assigns a trust score of 0 / 100, reinforcing the malicious assessment. These indicators collectively suggest that the domain is being leveraged in a targeted impersonation campaign, although the exact payload or credential‑harvesting mechanism has not been publicly disclosed. Defenders should add boost-marinade.finance to network and email blocklists, monitor DNS queries for the domain and its Cloudflare nameservers, and enforce TLS inspection to capture any hidden content behind the “Just a moment…” page. Because the site currently returns a 403 response, it may be employing a dynamic delivery model that activates only after certain triggers; therefore, continuous telemetry collection is recommended. At present, the lack of publicly available page content limits full behavioral analysis, so security teams should treat the domain as malicious until further evidence proves otherwise.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Сохранённые доказательства результата
Результат и атрибуция блокировки
- Результат
protected- Доступность
reachable_protected- Причина
cloudflare_challenge- Участник
- Cloudflare
- Механизм
challenge- Уверенность
- 85%
- Первое наблюдение
- Последнее наблюдение
SHA-256 доказательства a542d9a76aad
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Доступность
Первое сохранённое значение: Неизвестно
993d00c35140 -
Доступность
Неизвестно → Защищён
f396fbfaef51 -
Доступность
Защищён → Неизвестно
83374d9d652c -
Доступность
Неизвестно → Защищён
3ecdcbc0502a -
Доступность
Защищён → Неизвестно
1c9e2374fcc9 -
Доступность
Неизвестно → Защищён
90420712d764 -
Доступность
Защищён → Неизвестно
ca255b61650a -
Доступность
Неизвестно → Защищён
3642669fe8f4 -
Доступность
Защищён → Неизвестно
d8f7d37d7f95
Показать все (5)
-
Доступность
Неизвестно → Защищён
ff7b09228ec6 -
Доступность
Защищён → Неизвестно
afa49a2b04dd -
Доступность
Неизвестно → Защищён
a357370d02f9 -
Доступность
Защищён → Неизвестно
e70d6b0bd31a -
Доступность
Неизвестно → Защищён
a542d9a76aad
Сообщения сообщества
Сообщил 1 участник сообщества; впервые замечено 18.04.2026
- Сохранённые сообщения
- 1
- Уникальные URL
- 1
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено 3 технологии с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of boost-marinade.finance · checked Apr 19, 2026
Анализ конфигурации сайта
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание