highapexplanning[.]com
“HighApexPlanning”
Сводка доказательств
The domain highapexplanning.com was a brand-impersonation phishing site targeting users of the Celer platform. It posed as a legitimate service to deceive victims into disclosing login credentials or sensitive information through a fake interface. No crypto drainer kit was detected. The site is currently taken offline, but it previously operated as an active phishing threat under the guise of 'HighApexPlanning'.
Technical indicators confirm highapexplanning.com as a malicious domain. It was flagged by 2 of 95 VirusTotal security vendors, including Fortinet and Gridinsoft, and appeared on 1 security blocklist (PhishDestroy). The domain was registered on March 11, 2025, through Hello Internet Corp and resolved to the IP address 104.21.6.127, hosted on Cloudflare's infrastructure in the US. The SSL certificate was issued by WE1, and the observed page title was 'HighApexPlanning'. AlienVault OTX recorded the domain in 1 threat intelligence pulse, while Scamadviser assigned it a trust score of 16 out of 100. Google Safe Browsing did not flag the domain at the time of analysis.
Victims of highapexplanning.com should immediately change any passwords or credentials entered on the site, particularly for Celer-related accounts. Enable two-factor authentication (2FA) on all affected services to prevent unauthorized access. Monitor accounts for suspicious activity, such as unauthorized transactions or login attempts. Report the phishing domain to the impersonated brand (Celer) and submit it to platforms like Google Safe Browsing, PhishTank, or the Anti-Phishing Working Group (APWG) to aid in takedown efforts.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание