navigg[.]pro
“NAVI - Official Website”
navigg.pro — Контент недоступен. Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 6 alerts; Spamhaus DBL_PHISH; 1 external blocklist match (DiscordPhishing); CF Radar malicious; PhishDestroy score 100/100. Регистратор: Web Commerce Communica….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain navigg.pro confirms it as an active phishing endpoint targeting user credentials. Registered on March 12, 2026, through Web Commerce Communications Limited (WebNic.cc), the domain resolves to the IP address 192.162.199.140 and is hosted on nameservers ns1.eternitynames.net, ns2.eternitynames.net, ns3.eternitynames.net, and ns4.eternitynames.net. As of July 20, 2026, the domain remains operational and has been flagged by 18 of 91 security vendors on VirusTotal, indicating broad detection across multiple threat intelligence platforms. It appears on two security blocklists and has been included in six AlienVault OTX threat intelligence pulses, further corroborating its malicious classification. The domain is explicitly blocked by PhishDestroy and DiscordPhishing, suggesting it has been used in credential harvesting campaigns, potentially targeting users on communication platforms. No specific brand impersonation or phishing kit has been confirmed in available data, and the exact content or target of the phishing page remains unanalyzed. Infrastructure analysis reveals no SSL certificate details or HTTP response data at this time, limiting further technical assessment. Defenders should treat navigg.pro as a high-risk domain and implement blocking at the DNS or network perimeter level. Security teams are advised to monitor for connections to 192.162.199.140 and review logs for any interaction with the domain, particularly from endpoints accessing collaboration or social platforms. Given its continued activity and detection by multiple vendors, this domain poses a credible threat and warrants immediate containment measures.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | navigg.pro |
malicious | Sinkholed |
| OpenDNS | navigg.pro |
phishing | Phishing Block |
| DigiCert UltraDNS | navigg.pro |
malicious | Sinkholed |
| Hagezi Threat Feed | navigg.pro |
malicious | Sinkholed |
| Quad9 DNS | navigg.pro |
malicious | Sinkholed |
| DNS4EU | navigg.pro |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% уверенностиOpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260720-6F16B9 Recipient: compliance_abuse@webnic.cc Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание