gramsdailyxpress[.]com
“Home Classic - Grams Daily Xpress Courier”
gramsdailyxpress.com — Прикритий · доступний. Уособлення бренду: Celer; Тип шахрайства: Impersonation. Зведення доказів: VirusTotal 11/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); cloaking observed; PhishDestroy score 100/100. Реєстратор: Web Commerce Communica….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Gramsdailyxpress.com was registered on 15 May 2025 through Web Commerce Communications Limited and currently resolves to 107.173.193.235, an address owned by HostPapa (AS36352) in the United States. The site returns HTTP 200 and presents the page title “Home Classic – Grams Daily Xpress Courier”. Technical fingerprints show the use of Bootstrap, LiteSpeed, jQuery, Elfsight and HTTP/3, and the TLS certificate is a Let’s Encrypt issuance (identifier YE2). The domain has a Gridinsoft trust score of 0/100 and is listed on a single security blocklist. PhishDestroy has already blocked the domain, and two of ninety‑five VirusTotal scanners have flagged it as malicious. The infrastructure is explicitly marked as a brand‑impersonation campaign targeting the celer brand. While the exact phishing page content has not been publicly disclosed, the combination of a low trust score, active blocklist entry, and prior vendor detections indicates a high likelihood of credential‑harvesting or malicious redirects. Defenders should add 107.173.193.235 to network‑level deny lists, monitor DNS queries for gramsdailyxpress.com, and enforce email filtering rules that quarantine messages referencing the celer brand and containing links to this domain. Continuous re‑evaluation is advised because the domain remains active and may evolve its payload.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 5 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіElfsight is an all-in-one platform offering 70+ customisable widgets for websites.
elfsight.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога