ohniskotradevo[.]com
“Ohnisko Tradevo - Oficiální platforma | AI-Trading 2025 | Více než 10 000 hodnocení”
Analysis of ohniskotradevo.com shows a confirmed brand impersonation campaign targeting the financial brand argent. The domain was registered on February 21, 2026 through Name SRS AB and resolves to the Cloudflare IP address 172.67.201.252, which is associated with ASN 13335 in the United States. No SSL certificate was observed, and the site used Cloudflare nameservers morgan.ns.cloudflare.com and olga.ns.cloudflare.com.
The page title "Ohnisko Tradevo - Oficiální platforma | AI-Trading 2025 | Více než 10 000 hodnocení" was captured, indicating a fraudulent claim of an AI‑trading platform with a large number of reviews. Threat intelligence sources corroborate malicious activity: AlienVault OTX referenced the domain in one pulse, VirusTotal recorded detections from two of ninety‑three scanning vendors, and PhishDestroy has blocked the site. The domain appears on one public security blocklist and received a Gridinsoft trust score of 0 out of 100, reflecting extreme risk.
Current infrastructure status is offline, but the hosting arrangement on Cloudflare suggests rapid redeployment is feasible. Defenders should proactively block the domain at network perimeter and DNS filtering layers, add the associated IP address 172.67.201.252 to threat‑intel feeds, and monitor for newly registered domains using the same registrar or similar naming patterns. Continuous observation of Cloudflare‑hosted IP ranges for re‑appearance of the brand‑impersonation content is recommended, as the threat actor may reactivate the site or launch parallel campaigns under related domains.
Запись отправленного сообщения
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260107-B74E59- Заголовок сохранённой страницы
- Ohnisko Tradevo - Oficiální platforma | AI-Trading 2025 | Více než 10 000 hodnocení
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Acceptable Use Policy (AUP): The domain ohniskotradevo.com is engaged in phishing activities, which are explicitly prohibited under your AUP. This constitutes a clear violation of the policy against fraud and deception.
Terms of Service (TOS): The continued operation of this domain violates your TOS, which reserves the right to suspend or terminate services for any illegal activities, including phishing and fraud.
Applicable Laws (SE):
Brottsbalken (Swedish Penal Code) Chapter 9, Section 9: This law addresses fraud and imposes penalties for acts of deception intended to gain unlawful benefits.
Lag (2005:59) om elektronisk kommunikation: This law prohibits the use of electronic communications for phishing and other fraudulent activities, ensuring the protection of consumers.
Regulatory Note: Failure to take immediate action against this domain may result in regulatory scrutiny and potential liability under applicable laws. It is imperative to comply with your AUP and TOS to mitigate risks associated with hosting fraudulent activities.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | ohniskotradevo.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 источников · синхронизировано 10.08.2026
Хронология обнаружения
Сохранённые наблюдения в хронологическом порядке.
-
Cloudflare Radar
Cloudflare Radar: впервые отмечено как https://radar.cloudflare.com/scan/4c165b21-1f71-4f5c-aa28-32e3cea6f611
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание