darb[.]itc[.]gov[.]ae-docs[.]com
“DARB Platform”
Сводка доказательств
The site at darb.itc.gov.ae-docs.com masquerades as the DARB Platform while impersonating the brand Q Mobility, indicating a social engineering scam. The threat is that visitors may be deceived into providing credentials or sensitive information to a fraudulent entity posing as a legitimate mobility service provider.
Technical evidence shows VirusTotal flagged 21/95 detections, with Google Safe Browsing marking it for SOCIAL_ENGINEERING. The domain was created on 2026-02-21, registered through Aceville Pte. Ltd., and hosted on IP 43.162.108.157 (US) under AS132203 Tencent Building, Kejizhongyi Avenue. No SSL certificate is present. Nameservers are damiete.ns.cloudflare.com and irma.ns.cloudflare.com. Blocklists count: 1.
The site is currently DOWN/OFFLINE, with a GridinSoft trust score of 0/100. Risk level is high due to confirmed impersonation, social engineering flags, and multiple antivirus detections, though offline status reduces immediate threat.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260131-F47EB3- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Acceptable Use Policy (AUP): The domain darb.itc.gov.ae-docs.com is engaged in phishing activities, which directly contravenes the AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The use of this domain for phishing purposes constitutes a violation of the TOS, which reserves the right to suspend or terminate services for any fraudulent activities.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which is relevant as phishing schemes often involve unauthorized data access.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, applicable to the fraudulent nature of phishing.
CAN-SPAM Act (15 U.S.C. § 7701): This act regulates commercial email and prohibits misleading headers and deceptive subject lines, both of which are often utilized in phishing attacks.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny. Compliance with your AUP and TOS is essential to mitigate risks associated with domain abuse.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | darb.itc.gov.ae-docs.com |
phishing | Phishing Block |
| Cloudflare DNS | darb.itc.gov.ae-docs.com |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | darb.itc.gov.ae-docs.com |
malicious | Sinkholed |
| DNS4EU | darb.itc.gov.ae-docs.com |
malicious | Sinkholed |
| Hagezi Threat Feed | darb.itc.gov.ae-docs.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Registration: ae-docs.com
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain ae-docs.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание