MALICIOUS — CRITICAL
app-hash256[.]org
The domain app-hash256.org has been identified as a generic phishing threat, meaning it is designed to trick visitors into handing over sensitive information such as passwords, credit card numbers, or personal details.
- VirusTotal
- 6/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступність
- Доступно · доступ обмежено · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
app-hash256.org — Доступно · доступ обмежено (HTTP 403). Зведення доказів: VirusTotal 6/91 (alphaMountain.ai, Bfore.Ai PreCrime, CRDF, Forcepoint ThreatSeeker, Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
The domain app-hash256.org has been identified as a generic phishing threat, meaning it is designed to trick visitors into handing over sensitive information such as passwords, credit card numbers, or personal details. Phishing sites like this often impersonate legitimate services or use urgent warnings to lure victims. This specific domain appears to have no particular brand impersonation, but its generic nature makes it versatile for various scams. It is currently offline, but that does not guarantee it won't come back under a different guise.
PhishDestroy's analysis shows that app-hash256.org was registered on May 13, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, a common registrar for malicious domains. It resolves to IP address 188.114.97.3 and uses a Let's Encrypt SSL certificate (E7), which is typical for phishing sites seeking a veneer of legitimacy. Security vendors have flagged it: VirusTotal reports 1 out of 95 vendors marking it as malicious, and it appears on 3 security blocklists. Additionally, AlienVault OTX found it in 1 threat intelligence pulse, indicating some community awareness of its danger.
If you have visited app-hash256.org, do not enter any information. Immediately change passwords for any accounts you may have used and enable two-factor authentication. Run a full antivirus scan to check for malware. Report the domain to your email provider or security team. For ongoing protection, use PhishDestroy's database to check suspicious links before clicking. Stay vigilant and trust verified sources only.
Обсяг даних12 recorded checks
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.