platero[.]app
Проверка домена platero.app на фишинг и безопасность
“Platero”
platero.app — Последний известный активный (HTTP 200). Сводка доказательств: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); Spamhaus DBL_SPAM; PhishDestroy score 80/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, platero.app, is currently active and resolves to the IPv4 address 151.158.1.246, which is geolocated to Switzerland and associated with the EvoxtCH hosting infrastructure. The domain is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED and uses Cloudflare DNS resolvers (celeste.ns.cloudflare.com, evan.ns.cloudflare.com). TLS termination is provided by a Let's Encrypt certificate issued to the domain (identifier YE2). An HTTP GET returns a 200 status and the page title is reported as “Platero”. Security telemetry shows that the site is listed on one public blocklist and has been blocked by the PhishDestroy service. VirusTotal scans have recorded four detections out of ninety‑one scanned vendors, indicating that multiple security engines consider the site malicious. The available evidence points to a generic phishing operation, but the specific content of the page has not been publicly analysed, leaving the exact victim‑targeting technique uncertain. Defenders should block the domain at network perimeter, add the IP address 151.158.1.246 to deny lists, and monitor for any outbound connections to the associated Cloudflare name servers. Continuous re‑scanning with VirusTotal and inclusion in internal phishing detection rules are recommended to mitigate potential credential‑stealing attempts.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 02:41:14 UTC
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание