Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@natro.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
piteas[.]online
Проверка домена piteas.online на фишинг и безопасность
“piteas.online Premium Park Sayfası”
piteas.online — Последний известный активный (HTTP 200). Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 4/91 (alphaMountain.ai, Gridinsoft, SOCRadar, Webroot); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 76/100. Регистратор: Nics Telekomunikasyon ….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, piteas.online, is actively engaged in cryptocurrency phishing operations designed to harvest wallet credentials and private keys. Analysis indicates the site presents itself as a legitimate wallet interface, tricking users into entering sensitive information such as recovery phrases or passwords. Once captured, these details are used to drain digital assets from victims' accounts, often resulting in irreversible financial losses. The threat primarily targets users of decentralized finance platforms and self-custody wallets, exploiting the irreversible nature of blockchain transactions to maximize impact. Infrastructure analysis reveals piteas.online was registered through Nics Telekomunikasyon A.S., a registrar frequently associated with malicious domains. As of the latest scan, 4 out of 95 security vendors on VirusTotal flag the domain as malicious, while AlienVault OTX lists it in 2 distinct threat intelligence pulses. The domain appears on 3 security blocklists and is actively blocked by multiple cryptocurrency security tools, including wallet protection systems. The registration details and hosting patterns align with known phishing campaigns targeting the cryptocurrency sector, suggesting a coordinated effort to exploit users during periods of high market activity. If a user has visited piteas.online or entered any credentials, immediate action is required. First, disconnect the device from the internet to prevent further data exfiltration. Next, revoke any active wallet sessions or connected dApps associated with the compromised credentials. Users should transfer remaining assets to a new, secure wallet using a clean device and generate fresh recovery phrases. Monitor all linked accounts for unauthorized transactions and enable multi-factor authentication where possible. Report the incident to relevant blockchain security teams and local cybercrime authorities, providing transaction hashes and timestamps of any suspicious activity. Given the elevated risk level, assume all credentials entered on this domain are compromised and act accordingly.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
PD-20260610-673E90 Recipient: abuse@natro.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание