MALICIOUS — CRITICAL
aaincentive.us için kimlik avı ve güvenlik kontrolü
aaincentive[.]
This domain, aaincentive.us, is identified as a high-risk phishing site targeting Polish-speaking users with fraudulent discount offers.
- VirusTotal
- 14/91
- Blocklists
- No stored match
- Kullanılabilirlik
- Bilinen son aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
aaincentive.us — Bilinen son aktif (HTTP 200). Marka kimliğine bürünme: Allegro; Dolandırıcılık türü: Impersonation. Kanıt özeti: VirusTotal 14/91 (alphaMountain.ai, Chong Lua Dao, Cluster25, CRDF, ESET); URLScan malicious verdict; Spamhaus DBL_SPAM; CF Radar malicious; PhishDestroy score 100/100.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
This domain, aaincentive.us, is identified as a high-risk phishing site targeting Polish-speaking users with fraudulent discount offers. Analysis indicates the site presents itself as a legitimate retailer, advertising unrealistic discounts of 90–95% under the page title 'Oferta specjalna: 90–95% taniej.' The domain is currently offline but was actively used to deceive victims into disclosing personal or financial information under the guise of exclusive promotions. Infrastructure analysis reveals the domain was flagged by 18 of 95 security vendors on VirusTotal, indicating widespread detection as malicious. It resolves to the IP address 104.21.80.83 and employs Cloudflare’s content delivery network alongside HTTP/3 for enhanced performance and obfuscation. The SSL certificate is issued by Let’s Encrypt, a common tactic to appear trustworthy. The domain appears on six security blocklists, including those maintained by CERT-PL and PhishingArmy, further corroborating its malicious intent. The domain is currently offline, likely due to takedown efforts or operational changes by the threat actor. Organizations and users are advised to block the domain and its associated IP address at the network level. Security teams should monitor for related domains using similar naming conventions or infrastructure patterns. End-users who may have interacted with the site should be instructed to reset credentials, monitor financial statements for unauthorized activity, and report any suspicious transactions to relevant authorities.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Veri kapsamı12 recorded checks
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of aaincentive.us · checked Jun 26, 2026
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.