vindicate-law[.]org
Проверка домена vindicate-law.org на фишинг и безопасность
“МЕЖДУНАРОДНАЯ ЮРИДИЧЕСКАЯ КОМПАНИЯ "Vindicate Law" – юридическая помощь в воз...”
vindicate-law.org — Контент недоступен (HTTP 502). Сводка доказательств: VirusTotal 1/93 (SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain vindicate-law.org was registered on 21 February 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and points to the IP address 188.114.96.3, which is hosted within Cloudflare’s network (AS13335) and geolocated to the United States. DNS resolution is delegated to the Cloudflare authoritative nameservers jay.ns.cloudflare.com and khloe.ns.cloudflare.com. No TLS certificate was observed for the domain, indicating that HTTPS was not configured at the time of analysis. The site’s page title, rendered in Cyrillic, advertises an "International Legal Company \"Vindicate Law\" – legal assistance in recovering funds from financial fraud," suggesting a targeted lure toward Russian‑speaking victims.
VirusTotal scanned the domain and recorded a single detection out of 93 security vendors, indicating limited but notable malicious interest. The domain appears on three public blocklists and is explicitly listed by PhishDestroy, MetaMask, and SEAL, confirming that multiple threat‑intelligence providers have categorized it as malicious. Current network probes show the domain as offline, which may be a temporary takedown or a deliberate shutdown after a campaign window.
Evidence gaps include the lack of a live HTTP response, no accessible content for deeper forensic analysis, and an absence of known malware kits or associated command‑and‑control infrastructure. Defensive teams should continue to block the IP address 188.114.96.3 and the domain name across perimeter and endpoint controls, monitor for re‑hosting on alternative Cloudflare IP ranges, and add the domain to internal threat‑intel feeds. Ongoing observation of the registrar and the Cloudflare nameservers is advised to detect potential re‑registration or reuse of similar naming patterns in future phishing operations.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260218-582B60 Recipient: abuse@publicdomainregistry.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание