eaglestore[.]biz
“EagleStore.su - Home”
eaglestore.biz — Ошибка сервера (HTTP 502). Олицетворение бренда: Bank of america. Сводка доказательств: VirusTotal 1/95 (SOCRadar); PhishDestroy score 58/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain eaglestore.biz indicates elevated risk consistent with phishing infrastructure. The domain was registered on February 21, 2026, through NiceNIC International Group Co., Limited, a registrar frequently associated with low-reputation registrations. It resolves to the IP address 172.67.202.220, which is part of AS13335 (Cloudflare, Inc.), a network commonly leveraged by threat actors to obscure hosting origins and evade takedowns. Nameservers alfred.ns.cloudflare.com and daphne.ns.cloudflare.com further confirm Cloudflare as the DNS provider. The domain has been flagged by one security vendor on a single blocklist, as recorded by PhishDestroy.
While VirusTotal detection is minimal (1 of 95 vendors), this does not indicate safety; rather, it reflects limited visibility at the time of scanning. The SSL certificate is issued by Google Trust Services (WE1), a legitimate but frequently abused certificate authority in phishing campaigns. Trust scores from Scamadviser and Gridinsoft both register at 1/100 and 0/100, respectively, reinforcing the domain’s low reputation. The page title, 'EagleStore.su - Home,' suggests an attempt to mimic a retail or e-commerce platform, though the exact brand or target remains unconfirmed due to lack of deeper content analysis. Detected technologies include PHP, Cloudflare, and HTTP/3, which are consistent with modern phishing sites aiming for performance and evasion.
The domain is currently offline, likely following detection and enforcement action. Defenders should treat eaglestore.biz as compromised infrastructure. The use of Cloudflare, a low-trust registrar, and minimal detection coverage highlights the need for proactive monitoring of newly registered domains with similar characteristics. Network-level blocking of 172.67.202.220 and related Cloudflare IPs may prevent further exposure. No evidence of a specific phishing kit or targeted brand is available at this time.
Сигналы безопасности
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-15 03:00:12 UTC
Технологии · 4 identified
Server-side scripting language designed for web development.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of eaglestore.biz · checked Mar 2, 2026
Доказательства и внешние отчеты
PD-20260214-12F29D Recipient: nicenic@139.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание