ticker-master-online[.]com
“TicketMaster”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
Analysis of ticker-master-online.com shows a newly registered domain created on February 21, 2026 through Tucows Domains Inc. The domain resolves to the IPv6 address 2620:127:f00f:7::, which belongs to Cloudflare, Inc. (AS13335) and is geolocated to Canada. The authoritative name servers are Google's Cloud DNS endpoints (ns-cloud-b1.googledomains.com, ns-cloud-b2.googledomains.com, ns-cloud-b3.googledomains.com), indicating the operator leveraged a standard Google‑managed DNS service. The site served a TLS certificate issued by Google Trust Services under the WE1 trust anchor, confirming the use of Google’s certificate infrastructure. HTTP traffic was delivered over Cloudflare with HSTS and HTTP/3 enabled, and the underlying web stack was identified as Shopify, suggesting the infringer employed a legitimate e‑commerce platform to host malicious content.
The only visible page title is "TicketMaster," which aligns with the generic phishing classification but provides no direct evidence of brand impersonation beyond the title string. The site returned a 404 response at the time of collection, and its status is currently offline. Threat intelligence feeds have placed the domain on a single security blocklist and it has been actively blocked by PhishDestroy.
VirusTotal scans report three detections out of ninety‑three scanners, reinforcing the elevated risk assessment. Defenders should add ticker-master-online.com to domain blocklists, monitor for DNS resolution changes, and consider proxy‑level filtering for any traffic to its associated IP range. Continuous observation of the registrar and name‑server configuration is advised, as future re‑hosting could surface new malicious payloads.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260203-C2244F- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Acceptable Use Policy (AUP): The domain ticker-master-online.com is engaged in phishing activities, which directly contravenes the AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations. The use of this domain for phishing constitutes a clear violation of the TOS.
Applicable Laws (CA):
Criminal Code of Canada, RSC 1985, c 46, Section 342.1: This section addresses unauthorized use of computers, specifically targeting phishing schemes that deceive individuals to gain unauthorized access to sensitive information.
Competition Act, RSC 1985, c 19, Section 52: This law prohibits misleading advertising and deceptive marketing practices, which are applicable to the fraudulent activities associated with this domain.
Regulatory Note: Failure to take immediate action against this domain may result in regulatory scrutiny and potential liability under applicable laws. Non-compliance with your AUP and TOS could expose your organization to legal repercussions.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Статус домена
Недоступен → Доступен
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено 3 технологии с высокой уверенностью
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание