ambil[.]hadiahnya[.]mooo[.]com
“𝗗𝗔𝗡𝗔 𝗚𝗶𝘃𝗲𝗮𝘄𝗮𝘆 𝗜𝗻𝗱𝗼𝗻𝗲𝘀𝗶𝗮”
ambil.hadiahnya.mooo.com — Неперевірений. Уособлення бренду: DANA; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 11/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Fortinet); URLScan malicious verdict; PhishDestroy score 83/100. Реєстратор: Porkbun.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, ambil.hadiahnya.mooo.com, poses a brand impersonation threat targeting users of DANA, an Indonesian digital payment platform. The site displays a fraudulent giveaway page titled 'DANA Giveaway Indonesia,' designed to deceive visitors into entering sensitive credentials or financial information under the pretense of a legitimate promotion. Analysis indicates the domain is structured to exploit trust in the DANA brand, likely aiming to harvest login details, payment data, or personal information for malicious use. Infrastructure analysis reveals multiple technical indicators confirming the domain's malicious nature. The domain is flagged by 11 out of 95 security vendors on VirusTotal, indicating broad recognition of its fraudulent intent. It was registered on February 21, 2026, through Porkbun LLC, a registrar commonly associated with low-cost domain registrations favored by threat actors. The domain appears on one security blocklist and resolves to the IP address 148.113.46.149, hosted on OVH SAS infrastructure in India. The SSL certificate is issued by an entity linked to automated phishing toolkits, further corroborating its illegitimate purpose. Users who visited ambil.hadiahnya.mooo.com should take immediate action to mitigate potential risks. If any credentials or payment information were entered, affected individuals must change passwords for all associated accounts, particularly DANA and any linked financial services. Enable multi-factor authentication where available to add an additional security layer. Monitor financial statements for unauthorized transactions and report suspicious activity to the relevant financial institution. Additionally, scan devices for malware using updated security tools to ensure no secondary infections were introduced. Awareness of such scams and verification of domain legitimacy before entering sensitive data are critical preventive measures.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: mooo.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain mooo.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога