mantrasforex.com
“One moment, please...”
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@wildwestdomains.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
mantrasforex.com — Последний известный активный (HTTP 302). Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 11/90 (ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao, Fortinet); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Регистратор: Wild West Domains.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Сводка доказательств
The domain mantrasforex.com was registered on 16 March 2023 through Wild West Domains, LLC and is currently hosted on Cloudflare infrastructure, using the authoritative name servers aliza.ns.cloudflare.com and cody.ns.cloudflare.com. DNS resolution points to the IPv4 address 172.67.133.68, an address commonly associated with Cloudflare’s reverse‑proxy network. VirusTotal records indicate that one of ninety‑one scanned security vendors flagged the domain, suggesting at least a minimal malicious indicator.
Independent phishing‑blocking services have already taken action: PhishDestroy lists the domain as blocked, and it appears on a single external security blocklist. The site remains active as of the report date (27 July 2026) and is classified as a high‑risk generic phishing campaign. No additional public intelligence such as SSL certificate details, page title, or brand‑specific targeting has been released, leaving the exact payload or credential‑harvesting mechanism unknown.
Analysts should treat any traffic to mantrasforex.com as hostile, enforce network‑level denial or sink‑hole rules, and monitor for related C2 patterns that may leverage the same Cloudflare IP range. Continuous re‑evaluation is advised, as further reconnaissance could reveal additional indicators such as phishing kit signatures or compromised accounts.
Forensic History & Detection Timeline
-
Threat First Observed Jul 27, 2026 · 07:07 UTCDomain ingestion complete. Initial state is marked as alive pointing to IP
172.67.133.68.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённое наблюдение
Зафиксированное различие заголовков
Технологии · 3 identified
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of mantrasforex.com · checked Jul 27, 2026
Данные сообщества
2 сообщения сообщества
КатегорияOTHER_INVESTMENT_SCAM
Доказательства и внешние отчеты
PD-20260727-41EE36 Recipient: abuse@wildwestdomains.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание