Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 27 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
riotgames[.]ws
Сводка доказательств
Analysis of riotgames.ws indicates an active malicious infrastructure supporting a generic phishing campaign. The domain resolves to IP 91.92.243.12 and returns HTTP 200 with the page title "Loading," suggesting a placeholder or redirect page commonly used in credential harvesting. Registration data shows the domain was created on March 12, 2026 through Global Domain Group LLC and is delegated to Cloudflare nameservers hassan.ns.cloudflare.com and tess.ns.cloudflare.com, providing anonymity and resilience. VirusTotal scans reveal that three of ninety‑five security vendors have flagged the domain, adding independent corroboration of malicious intent. While the specific payload or credential collection mechanism has not been observed, the combination of recent registration, active hosting, and multiple vendor detections constitutes strong evidence of a phishing operation. Defenders should block network resolution to 91.92.243.12, add riotgames.ws to URL filtering and domain block lists, and monitor for related traffic patterns. Incident response teams should also review logs for any attempted connections from internal hosts to this domain and advise users to avoid any unsolicited communications referencing Riot Games credentials.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260715-46E60E- Заголовок сохранённой страницы
- Loading
Правовое основание
Полный текст доказательств
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | riotgames.ws |
malicious | Sinkholed |
| Cloudflare DNS | riotgames.ws |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | riotgames.ws |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание