chelvestonrenewableenergyltd[.]co[.]uk
“Chelveston Renewable Energy Ltd - Investments Capital”
chelvestonrenewableenergyltd.co.uk — Контент недоступний. Зведення доказів: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, Netcraft); PhishDestroy score 78/100. Реєстратор: Realtime Register BV t….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, chelvestonrenewableenergyltd.co.uk, is presently active and has been identified as a generic phishing infrastructure. The domain was registered on August 16, 2025 through Realtime Register BV trading as Axidomains (Tag = AXIDOMAINS). Authoritative name servers are ns1.dns-parking.com and ns2.dns-parking.com, indicating the use of a parking service rather than a dedicated hosting provider. DNS resolution points to the IPv4 address 84.32.84.206.
The address is currently listed on a single security blocklist and has been explicitly blocked by the PhishDestroy feed. VirusTotal analysis shows that one out of ninety‑one security vendors submitted a detection for this domain, confirming malicious intent despite the low overall detection count. No additional public intelligence such as SSL certificate details, HTTP response codes, Safe Browsing verdicts, or page‑title metadata has been published, leaving the exact content of the site unverified. The limited visibility suggests the operators may be leveraging a short‑lived hosting arrangement or rotating infrastructure to evade detection.
Defenders should immediately add chelvestonrenewableenergyltd.co.uk to DNS‑based blocklists and enforce URL filtering across enterprise gateways. Monitoring of the IP address 84.32.84.206 for any outbound connections or traffic spikes is advisable, as is periodic re‑scanning with multi‑engine services to capture any change in detection status. Given the registrar’s reputation for facilitating rapid domain turnover, continuous watch on newly created domains from Axidomains may provide early warning of similar campaigns. Until further forensic analysis of the landing page is available, the domain should be treated as high‑risk and blocked at the perimeter.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 6 identified
Smartsupp is a live chat tool that offers visitor recording feature.
www.smartsupp.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіHostinger is an employee-owned Web hosting provider and internet domain registrar.
www.hostinger.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
PD-20260727-AE3F20 Recipient: report@abuseradar.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога