flare-votings[.]xyz
“Google”
flare-votings.xyz — Помилка сервера (HTTP 502). Уособлення бренду: Google. Зведення доказів: VirusTotal 5/91 (alphaMountain.ai, Emsisoft, Forcepoint ThreatSeeker, Fortinet, Netcraft); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 100/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis as of August 07, 2026 indicates that the domain flare-votings.xyz is currently active and has been classified with an elevated risk rating. The domain appears on a single security blocklist and is explicitly blocked by the PhishDestroy filtering service. VirusTotal reports that five of ninety-one scanned vendors have flagged the domain, confirming that at least a subset of security products recognize malicious behavior associated with it. DNS resolution points to the IP address 104.21.41.176, which is hosted on a cloud‑based infrastructure commonly used by threat actors to provide flexible hosting and to obscure attribution.
No additional metadata such as registrar information, ASN, or geographic location is supplied in the available intelligence, leaving the precise ownership and hosting environment uncertain. Because the page title and any brand targeting information have not been disclosed, analysts cannot confirm which legitimate service the site may be impersonating, increasing uncertainty for incident responders. The limited detection count suggests that the domain may be employing evasion techniques or is early in its deployment lifecycle, but the presence on a blocklist and the multiple vendor detections provide sufficient evidence for defensive operators to treat it as hostile.
The lack of publicly available SSL certificate details further limits the ability to assess encryption practices, but the domain’s active status and blocklist presence alone warrant precautionary blocking. Recommended mitigation steps include adding flare-votings.xyz to local deny lists, ensuring web filtering solutions reference the blocklist entry, and configuring intrusion detection signatures that match the observed IP address. Continuous monitoring of the domain’s reputation, especially any changes in detection counts or new blocklist listings, is advised to adjust protective measures promptly.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-20 03:00:33 UTC
Технології · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
PD-20260807-F316BE Recipient: abuse@gen.xyz Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога