Перейти до звіту про безпеку
Checked 09.08.2026 Ref 63E00A26

MALICIOUS — CRITICAL

dagmaar[.]com

3 of 91 security engines flagged the domain; 2 public blocklists listed it (MetaMask, SEAL); the latest stored check returned HTTP 301.

83/100 evidence score · Critical
VirusTotal
3/91
Blocklists
2 · MetaMask, SEAL
Доступність
Останній відомий активний · HTTP 301
Report / Add Evidence Appeal this listing
No capture stored

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 3. Публічні списки блокувань, які повідомляють про збіг: 2. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
Jump to section
Огляд звіту

dagmaar.com — Останній відомий активний (HTTP 301). Зведення доказів: VirusTotal 3/91 (alphaMountain.ai, CRDF, Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. Реєстратор: Tucows.

Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.

Evidence Digest

Ref 63E00A26

dagmaar.com is classified critical with an evidence score of 83/100. 3 of 91 security engines flagged the domain; 2 public blocklists listed it (MetaMask, SEAL). Registered 14 May 2026 via Tucows Domains Inc., hosted on 169.47.130.72 (IBM Cloud, US). The latest stored check on 9 Aug 2026 returned HTTP 301.

Stored generated summary (templated)siliconflow · 12.07.2026

Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.

Dagmaar.com has been identified as an active high-risk generic phishing domain. The domain was registered through Tucows Domains Inc. on May 14, 2026, and is currently still active. Analysis indicates that the domain is associated with a page titled 'Dagmaar – exclusive silk scarves,' which may be attempting to lure users into a phishing scheme. The domain is hosted on nameservers ns1.afraid.org, ns2.afraid.org, and ns3.afraid.org, and resolves to the IP address 169.47.130.72, which is located in the United States and is managed by SoftLayer Technologies, Inc. Notably, the domain does not have an SSL certificate, which can be a red flag for users who might be wary of submitting sensitive information. Security vendors such as PhishDestroy, MetaMask, and SEAL have blocked this domain, and it appears on three security blocklists. While only one of 95 security vendors on VirusTotal has flagged this domain, the presence on multiple blocklists and its current active status suggest that it poses a significant threat. Given the high risk level and active status, defenders are advised to monitor traffic to this domain closely and consider implementing additional security measures to prevent potential phishing attacks. The exact content and nature of the site have not yet been fully analyzed, but the available evidence points to a need for heightened vigilance.

VirusTotal
VirusTotal
3 det.
OTX references
Вік
3 mo New
Зафіксований статус
Останній відомий активний 301
PhishDestroy
DestroyList
У списку
Обсяг даних12 recorded checks
VirusTotal 3 / 91 URLQuery не перевірено PhishStats не перевірено OTX 1 community reference CF Radar no data URLScan capture not submitted URLScan verdict висновок недоступний Блокування DNS не перевірено TLS немає даних сертифіката WHOIS 3 mo old Знімок екрана не зафіксовано Ланцюжок перенаправлень не досліджено

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
7/9

Статус у публічних блоклистах

Аналітика доменів

Домен
Сервер / ASN nginx · AS36351 IBM Cloud
Репутація IP abuse score 0/100 0 reports checked 13.07.2026
Реєстратор Tucows CA(CA)
IP-адреса 169.47.130.72 US
ГеолокаціяUS Ashburn, US
МережаAS36351 · SoftLayer Technologies, Inc
Зворотний пошук IPviewdns.info → rapiddns.io →
РеєстраціяСтворено 14.05.2026 (86d · New)
Статус HTTP301 Moved Permanently
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Вперше виявлено15.06.2026
Сервери іменns3.afraid.org
TLS Observationscanned 09.08.2026
ICANN OVERSIGHT

Акредитація та контекст RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Нічого не надсилається автоматично.
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

3 / 91 постачальників безпеки позначили цей домен
View on VT
Last analyzed Previous stored snapshot: 1 detection
alphaMountain.ai
CRDF
Gridinsoft
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно
Вбудувати цей звітRead-only HTML widget
HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/dagmaar.com"
  title="PhishDestroy threat report for dagmaar.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Дуже щирий лист-подяка

Генератор сатиричних чернеток

Одержувач
Контекст зборів

Це сатирична чернетка. Суми зборів є оцінками; ми не стверджуємо, що вони точно стосуються цього домену.