originalusedcarparts[.]com
“ABLE LOGISTICS SERVICES.”
originalusedcarparts.com — Контент недоступен. Сводка доказательств: VirusTotal 20/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CSIS Security Group); URLQuery 4 alerts; Google Safe Browsing flagged; PhishDestroy score 95/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
As of July 23, 2026, originalusedcarparts.com is flagged as a high‑risk generic phishing site that has been taken offline. The domain was registered on February 21, 2026 and resolves to IP address 45.136.70.88, which is allocated to ASN 44803 (Webdock.io ApS) in Denmark. The hosting provider is identified through the IP location as DK, confirming the infrastructure is based in Europe. The site employed Cloudflare as a reverse‑proxy and advertised support for HTTP/3, indicating an attempt to leverage modern web protocols for performance and obfuscation.
The SSL certificate is listed with an R13 rating, suggesting a low trust score but the certificate was nonetheless presented during the brief online window. Detection telemetry shows the domain appears on one security blocklist and has been added to the PhishDestroy blocklist. Google Safe Browsing classified the site as social engineering, and AlienVault OTX recorded the domain in two separate threat intelligence pulses, reinforcing its malicious reputation. VirusTotal scans returned 20 positive detections out of 93 security vendors, providing a strong consensus of malicious activity.
The only visible page title retrieved was "ABLE LOGISTICS SERVICES," which does not correspond to the domain name and may have been used to lend credibility to the phishing lure. No further content analysis is available because the site is currently offline. Defenders should continue to block the domain at perimeter filters, update any URL reputation feeds with the latest indicators, and monitor for any re‑appearance of the same IP address or hosting ASN in future campaigns. Incident responders should also consider correlating logs for requests to the domain or its IP during the brief active period to identify potential compromised accounts or credential harvesting attempts.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | originalusedcarparts.com/ |
malware | Detects file containing Telegram Bot API |
| Cloudflare DNS | originalusedcarparts.com |
malicious | Sinkholed |
| DigiCert UltraDNS | originalusedcarparts.com |
malicious | Sinkholed |
| DNS4EU | originalusedcarparts.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание