neonfortune[.]top
“NEONFORTUNE | Open the world of luck and rewards!”
neonfortune.top — Непроверенный. Олицетворение бренда: Foundation; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 10/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLScan malicious verdict; PhishDestroy score 85/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain neonfortune.top is associated with a phishing scam involving brand impersonation, specifically targeting the brand 'foundation'. The current status of neonfortune.top is offline, indicating it is no longer active. This domain was used to deceive users by pretending to be associated with the legitimate brand, posing an elevated risk to those who might have interacted with it.
From a technical standpoint, neonfortune.top was flagged by 1 of 95 security vendors on VirusTotal, specifically Fortinet. The domain was registered through PDR Ltd. d/b/a PublicDomainRegistry.com and was created on January 02, 2025. It resolves to the IP address 172.67.194.29 and appears on 1 security blocklist, namely PhishDestroy. The site did not have an SSL certificate, and its page title was 'NEONFORTUNE | Open the world of luck and rewards!'. The domain's nameservers are leonidas.ns.cloudflare.com and jocelyn.ns.cloudflare.com, and its IP location is in the US under AS13335 Cloudflare, Inc.
Users who suspect they have interacted with neonfortune.top should take immediate safety measures. If credentials or login information were shared, it is essential to change passwords immediately and enable two-factor authentication. Monitoring accounts for any signs of fraudulent activity is also advised. To report phishing attempts or scams, users can contact relevant authorities or use platforms like PhishDestroy to flag such domains. Remaining vigilant against brand impersonation scams can help protect personal and financial information.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание