legalreview-x[.]com
“Parked Domain name on Hostinger DNS system”
legalreview-x.com — Контент недоступен. Олицетворение бренда: Wordpress; Тип мошенничества: Social Media Phishing. Сводка доказательств: VirusTotal 1/93 (SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Регистратор: Hostinger.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis indicates that legalreview-x.com was registered on 23 February 2026 through Hostinger operations UAB. The domain resolves to IP 84.32.84.32, which is allocated to AS47583 Hostinger International Limited and geolocated to Lithuania. No TLS certificate is presented; the site is reachable only via HTTP and currently returns an offline status. The authoritative nameservers are ns1.dns-parking.com and ns2.dns-parking.com, which are typical of parked domains on Hostinger’s DNS infrastructure. The page title returned from the HTTP response is “Parked Domain name on Hostinger DNS system”, providing no functional content beyond a parking placeholder.
Threat intelligence classifies the domain as a social‑media phishing vector. VirusTotal reports a single positive detection out of 93 scanned engines, and three independent blocklists – PhishDestroy, MetaMask, and SEAL – have listed the domain as malicious. In addition, the domain appears on three other security blocklists, reinforcing the suspicion of abuse. No SSL/TLS certificate, no legitimate content, and the presence of a generic parking page are consistent with a fast‑flux or temporary phishing infrastructure that leverages newly registered domains. Uncertainties remain regarding the specific phishing campaign, such as the targeted social‑media platforms or the exact payload delivered to victims, because no page content beyond the parking placeholder has been observed.
The lack of additional detections beyond the single VirusTotal flag may reflect limited exposure or recent takedown. Defenders should continue to block legalreview-x.com at the network perimeter and DNS resolution layers, monitor for any resurgence of activity from the associated IP address, and consider adding the domain to internal blocklists. Threat hunting should include correlation of recent social‑media phishing reports with the registration timestamp and hosting provider, as adversaries frequently reuse Hostinger‑based infrastructure.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
PD-20260223-CB95CB Recipient: abuse-tracker@hostinger.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание