MALICIOUS — HIGH
Проверка домена oresupply.app на фишинг и безопасность
oresupply[.]
This technical threat report details the domain oresupply.app.
- VirusTotal
- 6/91
- Blocklists
- No stored match
- Доступность
- Контент недоступен · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
oresupply.app — Контент недоступен (HTTP 502). Олицетворение бренда: Across; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 6/91 (alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker, Fortinet); Spamhaus DBL_PHISH; PhishDestroy score 68/100. Регистратор: TLD Registry (.app).
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
This technical threat report details the domain oresupply.app. Based on the available data, the site is currently offline, preventing a definitive assessment of its claimed purpose or impersonated brand. The threat posed is consistent with a newly registered domain exhibiting suspicious characteristics, often used for phishing, malware distribution, or fraudulent schemes.
Technical analysis reveals that VirusTotal flagged the domain with 3 detections out of 95 security vendors, specifically by Fortinet, Gridinsoft, and SOCRadar. It also appears on one blocklist. The domain was registered through TLD Registry on February 21, 2026, and resolves to IP address 188.114.96.3, located in the United States and hosted by AS13335 Cloudflare, Inc. The domain uses nameservers hera.ns.cloudflare.com and miles.ns.cloudflare.com, and has no SSL certificate.
The current status of oresupply.app is down or offline. The risk level is elevated due to the low creation date, lack of SSL, and positive detection by multiple security vendors. The domain should be monitored for potential malicious activity if it becomes active again.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных12 recorded checks
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчетыIndependent lookups and source reports
PD-1769576775-oresupply.app Recipient: abuse@charleston.google Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.