deutcommplc[.]net
“Deut Commercial Bank Plc”
Сводка доказательств
On July 23, 2026 analysts observed that the domain deutcommplc.net is associated with a brand‑impersonation campaign targeting the Base brand. The site’s page title reads “Deut Commercial Bank Plc,” suggesting an attempt to masquerade as a legitimate financial institution, while the intelligence record explicitly lists “Impersonates: base.” The domain was registered on March 30, 2023 through HOSTINGER operations, UAB, and is hosted on IP address 163.61.188.5, which belongs to AS153568 NEW DHAKA HARDWARE and is geolocated to the United States. DNS resolution points to four nameservers – dns1.lytehosting.com, dns2.lytehosting.com, dns3.lytehosting.com, and dns4.lytehosting – all typical of shared hosting environments. No TLS certificate was presented for the site, indicating that traffic is unencrypted and potentially vulnerable to interception.
Malware and URL reputation services have flagged the domain; VirusTotal reports six of ninety‑five scanners labeling it malicious, and Gridinsoft assigns a trust score of zero out of one hundred. The domain appears on a single security blocklist and has been actively blocked by the PhishDestroy mitigation service. Current monitoring indicates that the site is offline, though its elevated risk rating implies that the infrastructure could be re‑activated.
Uncertainty remains regarding the exact content served while the site was live, as no visual or structural analysis is available. Defenders should continue to block the domain and its hosting IP, add the nameservers to watch lists, and monitor for re‑registration or similar domains created through the same registrar. Ongoing vigilance is recommended to detect any resurgence of the impersonation campaign or related infrastructure.
Data Coverage
Сигналы безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание