Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@publicdomainregistry.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
finarona[.]info
“Sicher durch den Gotthard und darüber hinaus: Vignetten-Info 2026”
finarona.info — Неперевірений. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLQuery 1 alert; PhishDestroy score 69/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged for credential theft operations impersonating Swiss toll vignette services under the pretext of "Vignetten-Info 2026." The site specifically targets users seeking information about the Gotthard tunnel toll requirements, presenting a fraudulent interface designed to harvest login credentials, payment details, or personal identification data associated with Swiss motorway access permits. The localized German-language content and timing suggest an attempt to exploit upcoming regulatory changes or seasonal travel patterns. Analysis indicates the domain was registered on February 21, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with low-reputation domains. Infrastructure analysis reveals the site resolves to IP address 172.67.132.229 and employs Cloudflare services, including HTTP/3, to obscure hosting origins. Despite zero detections in VirusTotal's 95-engine scan, the domain appears on one security blocklist, indicating prior identification by automated or community-driven threat intelligence platforms. The SSL certificate is issued by Google Trust Services, providing a false sense of legitimacy to visitors. Users who accessed finarona.info should immediately revoke any credentials entered on the site, particularly those associated with financial services or government-issued identification. Monitor accounts linked to the provided information for unauthorized transactions or access attempts. Given the domain's recent creation date and offline status, consider this incident part of a broader campaign; verify the legitimacy of any communication claiming to be from Swiss toll authorities through official channels. Network administrators should block the domain and associated IP address 172.67.132.229 at perimeter defenses to prevent further exposure.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | finarona.info |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of finarona.info · checked Jun 26, 2026
Докази та зовнішні звіти
PD-20260214-8F7FD3 Recipient: abuse@publicdomainregistry.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога