Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
licensefetcher[.]com
“Buy Driver's License Online Without Driving Tests”
Kaydedilmiş gözlem
Gözlemlenen başlık farkı
Kanıt özeti
Analysis of the domain licensefetcher.com indicates an active fraudulent operation targeting individuals seeking to obtain driver licenses without testing. Registered on April 9, 2025, through Ultahost, Inc., the domain resolves to the IP address 192.142.10.5, hosted in the Netherlands under the same registrar. Nameservers ns1.ultahost.com through ns4.ultahost.com further confirm the domain's infrastructure ties to Ultahost. The site presents a page title explicitly stating 'Buy Driver's License Online Without Driving Tests,' a clear indicator of its fraudulent intent. As of July 12, 2026, the domain remains operational, returning an HTTP 200 status, and is flagged by one security blocklist. Five of ninety-one security vendors on VirusTotal have detected the domain as malicious, though the absence of additional context limits the interpretation of this detection rate. The domain employs a Let's Encrypt SSL certificate (R12), a common practice among both legitimate and malicious sites to enable HTTPS connections. Detected technologies include WordPress, MySQL, PHP, Yoast SEO, LiteSpeed, and JavaScript libraries such as Underscore.js and jQuery, suggesting a standard content management system setup rather than a custom-built phishing kit. No evidence currently links this domain to a specific phishing kit or broader campaign beyond its stated fraudulent offer. The Gridinsoft trust score of 0/100 aligns with its malicious classification but provides no additional technical insight. Defenders should prioritize blocking the domain and its associated IP address (192.142.10.5) at the network level. Monitoring for similar domains registered through Ultahost or resolving to the same IP may help identify related fraudulent activity. Given the domain's persistence and clear fraudulent messaging, continued vigilance is warranted.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260318-5E3041- Yakalanan sayfa başlığı
- Buy Driver's License Online Without Driving Tests
- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Section 3.1 of the AUP: The domain licensefetcher.com is engaged in phishing activities, attempting to deceive users into providing sensitive personal information, which constitutes a clear violation of your Acceptable Use Policy prohibiting fraud and deception.
Section 5.2 of the TOS: The domain's activities directly contravene the terms that reserve the right to suspend or terminate services for any illegal activities, including those related to phishing and fraud.
Applicable Laws (NL):
Wet computercriminaliteit III (Computer Crime Act III): This law criminalizes phishing and other forms of cyber fraud, making it illegal to deceive individuals for financial gain.
Wet bescherming persoonsgegevens (General Data Protection Regulation - GDPR): Phishing activities violate the principles of data protection and privacy, exposing individuals to unauthorized data processing.
Regulatory Note: Non-compliance with your own policies and applicable laws may result in regulatory scrutiny and potential legal consequences. Immediate action is required to mitigate these risks.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Tespit zaman çizelgesi
-
VirusTotal
0 → 2
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Alan adı durumu
Erişilemiyor → Erişilebilir
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of licensefetcher.com · checked Mar 18, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin