gobamalltk[.]org
Зведення доказів
The domain gobamalltk.org has been identified as a phishing site specifically impersonating Amazon, a major e-commerce platform. This infrastructure was operational for credential harvesting, tricking users into submitting login credentials, payment details, or personal information under false pretenses. Analysis indicates the site is currently offline, though its prior activity poses residual risks to users who may have interacted with it during its active period. Infrastructure analysis reveals the domain was registered through Dynadot Inc on June 09, 2026, and resolved to the IP address 161.248.15.131. Security telemetry shows it was flagged by 15 of 95 vendors on VirusTotal, indicating moderate to high detection rates across the security community. The domain appears on one security blocklist and has been referenced in two threat intelligence pulses on AlienVault OTX, suggesting its inclusion in broader phishing campaigns. Additionally, the domain holds a Gridinsoft trust score of 0/100, reinforcing its malicious classification. Current status confirms the domain has been taken offline, likely due to enforcement actions or hosting provider intervention. However, the infrastructure may reappear under a different domain or IP address, a common tactic in phishing operations. Organizations and individuals are advised to block the domain gobamalltk.org and its associated IP 161.248.15.131 at the network level. Users who may have visited the site should reset credentials for any accounts accessed during the interaction, enable multi-factor authentication, and monitor financial statements for unauthorized activity. Security teams should review logs for connections to the domain or IP to identify potential compromises.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260611-A4BA9D- Заголовок збереженої сторінки
- TikTok
- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | gobamalltk.org |
malicious | Sinkholed |
| DNS4EU | gobamalltk.org |
malicious | Sinkholed |
| OpenDNS | gobamalltk.org |
phishing | Phishing Block |
| Cloudflare DNS | gobamalltk.org |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
Хронологія виявлення
-
VirusTotal
16 → 15
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога