tge-stable[.]app
“Nur einen Moment…”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
Analysis of the domain tge-stable.app confirms its classification as an active phishing infrastructure, currently flagged by multiple security mechanisms. The domain resolves to 172.67.146.14, an IP address assigned to AS13335 (Cloudflare, Inc.), and is protected by Cloudflare nameservers (duke.ns.cloudflare.com and meilani.ns.cloudflare.com). The site returns an HTTP 403 status, indicating access restrictions, while its SSL certificate is issued by Google Trust Services (WE1). These technical characteristics align with common phishing tactics that leverage content delivery networks to obscure hosting origins and evade detection. The domain appears on at least one security blocklist, with PhishDestroy explicitly blocking it. Additionally, three out of ninety-five security vendors on VirusTotal have flagged tge-stable.app as malicious, reinforcing its high-risk designation. The page title, 'Nur einen Moment…' (German for 'Just a moment…'), suggests the site may employ geofencing or conditional access techniques, though the exact target or phishing methodology remains unconfirmed. No brand-specific indicators or scam categorization (e.g., credential harvesting, financial fraud) are present in the available data, limiting further attribution. Infrastructure analysis reveals the use of Cloudflare services, including HTTP/3, which may complicate traditional takedown efforts. The domain’s registration details remain opaque, as is typical for phishing operations seeking to delay attribution. Defenders should treat tge-stable.app as an active threat, implementing network-level blocks for the domain and its resolving IP. Monitoring for related certificates (e.g., Google Trust Services WE1) may help identify additional malicious infrastructure. Given the domain’s persistence despite partial vendor detection, organizations should prioritize proactive blocking and alerting for any user interaction with this resource.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание