rover-base[.]xyz
“RoVer”
rover-base.xyz — Контент недоступен. Олицетворение бренда: Base; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 8/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Google Safe Browsing); URLQuery 1 alert; Google Safe Browsing flagged; Spamhaus DBL_SPAM; PhishDestroy score 85/100. Регистратор: Hosting Concepts.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
rover-base.xyz was created on 26 July 2026 and is currently resolving to the IPv4 address 91.240.20.15. The domain is registered through Hosting Concepts B.V. operating under the Registrar.eu brand, and its authoritative name servers are ns1.eggywall.org and ns2.eggywall.org. Google Safe Browsing classifies the domain as a social engineering threat, and the PhishDestroy feed has already added it to its blocklist. In addition, the domain appears on one other security blocklist, indicating that at least two independent sources have taken remediation action.
VirusTotal reports that the domain has been examined by 91 antivirus and URL‑reputation engines, none of which have raised a detection at the time of analysis. The absence of detections does not imply safety; it merely reflects the current lack of signatures for this particular indicator. The combination of a freshly registered domain, a single‑point hosting footprint, and immediate inclusion on phishing‑oriented blocklists aligns with the observed generic phishing classification.
No further intelligence such as SSL certificate details, HTTP response codes, page titles, or content analysis is available, leaving the exact malicious payload or target brand undefined. Defenders should consider adding rover-base.xyz to outbound DNS and web‑proxy deny lists, monitor DNS queries for the associated IP address, and, where possible, employ sink‑holing or sink‑routing to disrupt any further command‑and‑control traffic. Continuous re‑scanning with multi‑engine services and periodic verification of blocklist status are recommended to capture any future changes in the domain’s threat profile.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | humanterminal.xyz |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Перекрёстная проверка данных об угрозах · source references
Технологии · 2 identified
React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% уверенностиNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of rover-base.xyz · checked Jul 27, 2026
Доказательства и внешние отчеты
PD-20260727-B1911D Recipient: abuse@hooray.solutions Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание