news[.]cistronixperu[.]com
“Just another WordPress site -”
news.cistronixperu.com — Непроверенный. Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 11/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, Cluster25, ESET); PhishDestroy score 88/100. Регистратор: Hosting Concepts.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain news.cistronixperu.com indicates active involvement in crypto-related phishing operations, with multiple technical indicators supporting its malicious classification. The domain was registered on May 12, 2004, through Hosting Concepts B.V. d/b/a Registrar.eu, and currently resolves to the IP address 173.236.253.23, hosted by DreamHost in the United States. Despite its long registration history, the domain exhibits characteristics consistent with recent malicious activity, including a 301 HTTP redirect status and a Scamadviser trust score of 1 out of 100, suggesting minimal legitimacy. Infrastructure analysis reveals the use of WordPress as the underlying content management system, alongside MySQL, PHP, and Apache HTTP Server. Additional technologies detected include All in One SEO, Moment.js, jQuery Migrate, and jQuery, which are commonly exploited in phishing campaigns to enhance functionality or evade detection. The domain is flagged by 10 out of 95 security vendors on VirusTotal, and it appears on two security blocklists, including PhishDestroy and PhishingDB. The SSL certificate is issued by Let’s Encrypt (R12), a detail often leveraged by threat actors to lend superficial credibility to malicious sites. The page title, 'Just another WordPress site,' is a default placeholder, further indicating a lack of legitimate configuration or intent. Gridinsoft assigns the domain a trust score of 0 out of 100, reinforcing its classification as high-risk. While the domain’s age might suggest historical legitimacy, its current behavior aligns with crypto scam operations, a pattern observed in other recently compromised or repurposed domains. Defenders should treat this domain as actively malicious and prioritize blocking or monitoring any connections to 173.236.253.23 or associated subdomains. Further investigation into the hosting infrastructure may reveal additional linked domains or campaigns.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: cistronixperu.com
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain cistronixperu.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 9 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Most widely used open-source HTTP server software.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of news.cistronixperu.com · checked Mar 22, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание