alabama[.]mobile-zkn[.]vip
alabama.mobile-zkn.vip — Неперевірений. Зведення доказів: VirusTotal 12/91 (BitDefender, Chong Lua Dao, CyRadar, ESET, Forcepoint ThreatSeeker); PhishDestroy score 88/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain alabama.mobile-zkn.vip was registered on June 12, 2026 through Gname.com Pte. Ltd. and is currently active with an elevated risk rating. DNS resolution points to the IP address 172.67.167.115, and the authoritative name servers are nataly.ns.cloudflare.com and cesar.ns.cloudflare.com, indicating use of Cloudflare’s DNS infrastructure. The domain appears on one public security blocklist and has been explicitly blocked by the PhishDestroy service, confirming its malicious intent.
VirusTotal analysis shows that 12 of 91 scanned security vendors flagged the domain as malicious, providing independent corroboration of its phishing nature. No additional intelligence such as page title, SSL certificate details, or HTTP response codes is available at this time, leaving the exact content and lure technique unverified. Defenders should prioritize immediate containment by adding alabama.mobile-zkn.vip to network deny lists and updating endpoint protection policies to include the observed IP address 172.67.167.115.
Continuous monitoring of related Cloudflare name servers and the registrar Gname.com Pte. Ltd. is advised to detect any subsequent domains that may share this infrastructure. Given the confirmed blocklist entry and multi‑vendor detection, the domain should be treated as a confirmed phishing source pending further forensic examination.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: mobile-zkn.vip
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain mobile-zkn.vip behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 3 identified
ASP.NET is an open-source, server-side web-application framework designed for web development to produce dynamic web pages.
www.asp.net 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога