Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is cloud-abuse@yandex-team.ru.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
danilandlubov[.]ru
“ÐÑиглаÑение на ÑвадÑÐ±Ñ - Ðаниил & ÐÑÐ±Ð¾Ð²Ñ (11.07.2026)”
danilandlubov.ru — Прикритий · доступний. Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLQuery 2 alerts; 1 external blocklist match (ScamSniffer); cloaking observed; PhishDestroy score 98/100. Реєстратор: BEGET-RU.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy has identified danilandlubov.ru as a high-risk domain engaged in generic phishing activity. This means the site is designed to trick visitors into revealing sensitive information under false pretenses, such as fake wedding invitations. The domain is currently active and poses an ongoing threat to users who may encounter it through email or social media.
Technical analysis reveals that danilandlubov.ru was created on May 11, 2026, and registered through BEGET-RU. It resolves to IP address 188.72.103.3 and uses an SSL certificate from Let's Encrypt (R12), which gives it a false sense of legitimacy. VirusTotal data shows that 1 out of 95 security vendors flag this domain as malicious, and it appears on 2 security blocklists. Additionally, AlienVault OTX has tracked it in 1 threat intelligence pulse, indicating active monitoring by the security community. The page title contains garbled text for a wedding invitation, further confirming its phishing nature.
To protect against this generic phishing threat, users should never click on links in unsolicited messages claiming to be wedding invitations. If you have already visited danilandlubov.ru, do not enter any personal information. Run a full antivirus scan and change passwords for any accounts that may have been compromised. Report the domain to your email provider and block it at the network level to prevent future access.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | maps.googleapis.com/maps-api-v3/api/js/64/12d/intl/ru_all/common.js |
audit | Hunting_JS_WebAssembly |
| Hagezi Threat Feed | danilandlubov.ru |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 1 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
PD-20260510-F12C67 Recipient: cloud-abuse@yandex-team.ru Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога