o-redirecting[.]com
Сводка доказательств
Analysis as of July 25, 2026 shows that o-redirecting.com was registered through Tucows Domains Inc. on December 15, 2025 and is currently taken offline. The domain is delegated to Cloudflare’s authoritative name servers (amit.ns.cloudflare.com and dana.ns.cloudflare.com) and resolves to the IPv6 address 2a06:98c1:3121::3, which belongs to AS13335 Cloudflare, Inc., geographically located in the United States. No SSL certificate is associated with the host, indicating that the site does not serve HTTPS traffic. The domain appears on one security blocklist and is actively blocked by PhishDestroy.
Independent reputation scoring from Gridinsoft assigns a trust score of 0 out of 100, reflecting an extremely poor reputation. VirusTotal has scanned the domain, with two of ninety‑three security vendors flagging it as malicious, corroborating the presence of hostile activity. The observed phishing kit is identified as an Airdrop Scam, a tool commonly employed for banking‑related credential harvesting. The scam type is recorded as Banking Phishing, although no specific financial institution is disclosed in the available intelligence.
Because the site is offline, page‑level details such as title, content, or login forms have not been captured, leaving the exact visual lure and credential‑capture mechanisms uncertain. Defenders should immediately block o-redirecting.com at the DNS and network layers, add the associated IPv6 address to firewall deny lists, and monitor the Cloudflare ASN for any related domains or re‑activation attempts. Threat‑intelligence feeds should be updated to include the domain, its registrar, and hosting details to improve detection across endpoint and email protection solutions. Users should be warned that unsolicited messages promising airdrops or crypto giveaways that direct to this domain are likely malicious and should be ignored.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание