Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@registrar.eu.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
everlastingadultpleasure[.]com
“Everlasting Adult Pleasure”
everlastingadultpleasure.com — Непроверенный. Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 7/91 (alphaMountain.ai, Chong Lua Dao, CRDF, ESET, Gridinsoft); 1 external blocklist match (ScamSniffer); PhishDestroy score 78/100. Регистратор: Hosting Concepts.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, everlastingadultpleasure.com, is flagged as a generic phishing site designed to harvest user credentials through a fake login portal. Analysis indicates no direct brand impersonation, but the site employs standard phishing tactics to deceive visitors into submitting sensitive information. The page title 'Loading...' suggests an incomplete or intentionally obfuscated payload, a common technique to evade automated detection during initial deployment. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 172.67.216.212 and was registered on March 26, 2026, through Hosting Concepts B.V. d/b/a Registrar.eu. VirusTotal reports 10 out of 95 security vendors flagging the domain as malicious. The domain appears on 2 security blocklists and is referenced in 1 AlienVault OTX threat intelligence pulse. The SSL certificate is issued by Let's Encrypt, a common choice for both legitimate and malicious sites due to its free and automated nature. Gridinsoft and Scamadviser both assign trust scores of 0/100 and 1/100, respectively, further corroborating its malicious classification. The domain is currently offline, likely due to takedown actions or abandonment by the threat actor. Despite its inactive status, residual risk remains for systems that may have cached DNS records or users who visited the site prior to its removal. Organizations are advised to block the domain and its associated IP at the perimeter, monitor for any attempts to access it internally, and review logs for connections to 172.67.216.212. Users who may have interacted with the site should be instructed to reset credentials and enable multi-factor authentication on affected accounts.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчеты
PD-20260326-086A61 Recipient: abuse@registrar.eu Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание