antiquewhite-woodcock-764696[.]hostingersite[.]com
“𝗗𝗔𝗡𝗔 | #𝗦𝗮𝘁𝘂 𝗗𝗼𝗺𝗽𝗲𝘁 𝗨𝗻𝘁𝘂𝗸 𝗦𝗲𝗺𝘂𝗮 𝗧𝗿𝗮𝗻𝘀𝗮𝗸𝘀𝗶”
antiquewhite-woodcock-764696.hostingersite.com — Контент недоступний. Уособлення бренду: DANA; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 15/95 (alphaMountain.ai, BitDefender, Certego, CRDF, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Реєстратор: Hostinger.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain antiquewhite-woodcock-764696.hostingersite.com was registered on June 22, 2023 through Hostinger Operations, UAB, and is hosted on an IPv6 address (2a02:4780:45:3647:a2ae:e97:24a7:45e0) belonging to AS47583 Hostinger International Limited in Germany. The authoritative nameservers are any1.hostinger.com and any2.hostinger.com, indicating reliance on Hostinger’s default DNS infrastructure. The site presented a page title reading "𝗗𝗔𝗡𝗔 | #𝗦𝗮𝘁𝘂 𝗗𝗼𝗺𝗽𝗲𝘁 𝗨𝗻𝘁𝘂𝗸 𝗦𝗲𝗺𝘂𝗮 𝗧𝗿𝗮𝗻𝘀𝗮𝗸𝘀𝗶", which explicitly references the DANA brand, confirming a brand‑impersonation campaign. The SSL certificate is issued by Sectigo Limited under the Sectoni Public Server Authentication CA DV R36, a standard domain‑validated certificate that does not provide any authenticity beyond encryption.
Security telemetry shows that 15 out of 95 VirusTotal scanners flagged the domain, and it appears on one external blocklist. PhishDestroy has already blocked the URL, while the Gridinsoft trust score is 0/100 and Scamadviser assigns a trust rating of 1/100, both indicating extreme lack of legitimacy. The domain is currently offline, which limits active probing but does not remove historical risk. No additional intelligence such as OTX tags or Safe Browsing entries is supplied.
Analysts should treat antiquewhite-woodcock-764696.hostingersite.com as a confirmed DANA impersonation vector. Defensive actions include adding the domain to URL filtering rules, updating intrusion detection signatures with the observed IPv6 host, and sharing the indicator set (domain, IP, nameservers, SSL fingerprint) with upstream threat‑sharing platforms. Continuous monitoring of Hostinger‑hosted infrastructure for similar patterns is advised, given the hoster's frequent use in malicious campaigns.
Сигнали безпеки
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: hostingersite.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain hostingersite.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Архівні докази
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога