Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 17 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
wide-diamond[.]ltd
“wide-diamond.ltd”
Сводка доказательств
The domain wide-diamond.ltd is currently active and has been identified as part of a generic phishing campaign. Registration data shows the domain was created on 2025-01-01 through Dynadot Inc, and it resolves to the IPv4 address 178.32.82.176. The authoritative name servers are ns3.ddoscure.com and ns4.ddoscure.com. VirusTotal analysis reports that 13 of 91 security vendors flag the domain as malicious, indicating a moderate level of consensus among scanners.
The domain is listed on one public security blocklist and is blocked by the PhishDestroy service, confirming that at least one dedicated anti‑phishing platform has taken mitigation action. No additional public intelligence such as Safe Browsing verdicts, OTX references, SSL certificate details, HTTP response codes, or page title information is presently available. The observed indicators suggest that the infrastructure is deliberately hosted on a single IP address and uses custom name servers, a pattern often associated with short‑lived phishing operations. Defenders should add 178.32.82.176 to network‑level deny lists and enforce DNS filtering for wide-diamond.ltd.
Continuous monitoring of the domain’s DNS records and any changes to its hosting environment is recommended, as threat actors frequently shift hosting to evade takedown efforts. Because the domain is already flagged by multiple vendors, security solutions that ingest VirusTotal or similar reputation feeds will likely generate alerts; administrators should ensure those alerts are routed to incident response teams for rapid triage. Organizations should also consider sharing the indicator set (domain, IP, name servers) with internal threat‑intel platforms and external information‑sharing communities to improve collective detection capability. Until further content analysis becomes available, the precise phishing payload or targeted brand remains unknown, and any email or web traffic directed to this domain should be treated as malicious.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260727-A78D3F- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | wide-diamond.ltd |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Первая запись
Первое сохранённое значение: Доступен
Сообщения сообщества
Сообщили 0 участников сообщества; впервые замечено 27.07.2026
- Уникальные URL
- 1
Данные сообщества
1 сообщение сообщества
КатегорияOTHER_INVESTMENT_SCAM
Data submited by Intelligence for good
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено 7 технологий с высокой уверенностью
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of wide-diamond.ltd · checked Jul 27, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание