client[.]738620-cb[.]com
“403 Forbidden”
Зведення доказів
This domain, client.738620-cb.com, is identified as a credential harvesting phishing site targeting users through social engineering tactics. Currently, the domain is offline, though it previously hosted infrastructure designed to deceive visitors into disclosing sensitive login credentials or personal information. No specific brand impersonation has been confirmed, but the domain’s structure and behavior align with generic phishing campaigns aimed at broad exploitation. Analysis indicates the domain was registered through OwnRegistrar, Inc., and resolves to the IP address 107.189.17.124. It was flagged by 19 of 95 security vendors on VirusTotal, reflecting widespread detection as malicious. The domain was created on May 31, 2026, an anomalous future date that may indicate registry manipulation or misconfiguration. Infrastructure analysis reveals the use of Ubuntu and Nginx technologies, common in phishing server setups. The domain appears on three security blocklists, and Google Safe Browsing has categorized it under SOCIAL_ENGINEERING. Trust scores from independent sources, such as Gridinsoft, are at 0/100, further confirming its malicious nature. The domain is currently offline, though its prior activity and infrastructure warrant continued monitoring. Organizations and users are advised to block the domain and its associated IP address (107.189.17.124) at the network level. Security teams should review logs for connections to this domain or IP and investigate potential credential exposure. If the domain reactivates, it should be treated as an active threat. Proactive measures, such as updating endpoint protection rules and educating users on social engineering risks, are recommended to mitigate similar threats.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260601-F624D7- Заголовок збереженої сторінки
- Loading...
- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Acceptable Use Policy (AUP): The domain client.738620-cb.com is actively engaged in phishing activities, which are explicitly prohibited under your AUP. This constitutes a clear violation of the policy aimed at preventing fraud and deception.
Terms of Service (TOS): The continued operation of this domain violates your TOS, which reserves the right to suspend or terminate services for any activities that are illegal or harmful, including phishing schemes.
Applicable Laws (UNITED STATES):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: This law prohibits unauthorized access to computers and the use of such access to commit fraud, including phishing.
Wire Fraud - 18 U.S.C. § 1343: Engaging in schemes to defraud individuals via electronic communications, such as phishing, falls under this statute.
CAN-SPAM Act - 15 U.S.C. § 7701: This law regulates commercial email and prohibits deceptive practices, including misleading subject lines and sender information, which are common in phishing attempts.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny. Compliance with your AUP and applicable laws is essential to mitigate risks associated with domain abuse.
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | client.738620-cb.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Хронологія виявлення
-
VirusTotal
8 → 19
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Registration: 738620-cb.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain 738620-cb.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 2 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of client.738620-cb.com · checked Jun 26, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога