granguadalpbanus[.]spahotel[.]guru
“Gran Hotel Guadalpin Banus Marbella - Marbella, Spain”
granguadalpbanus.spahotel.guru — Неперевірений. Уособлення бренду: Booking; Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 13/91 (BitDefender, Chong Lua Dao, CRDF, ESET, Forcepoint ThreatSeeker); URLScan malicious verdict; PhishDestroy score 94/100. Реєстратор: Spaceship.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies granguadalpbanus.spahotel.guru as an active crypto drainer posing as a fraudulent hotel booking platform. This domain is currently operational and leverages deceptive techniques to trick users into connecting cryptocurrency wallets under false pretenses, enabling unauthorized fund transfers. The threat actor behind this campaign is actively distributing this URL through social engineering lures, including fake promotions or discounts for luxury hotel stays, ultimately leading victims to unknowingly authorize malicious wallet drainer scripts. This domain was flagged by 7 of 95 VirusTotal security vendors, indicating elevated malicious activity. It resolves to IP address 52.29.26.157 and utilizes a Let’s Encrypt SSL certificate to appear legitimate. While the registrar and creation date remain undisclosed in public records, VirusTotal detections and behavioral analysis confirm its use in active cryptocurrency theft operations. Trust scores from multiple threat intelligence platforms further corroborate its malicious classification, with additional indicators pointing to broader campaign infrastructure. Users and organizations are strongly advised to block access to granguadalpbanus.spahotel.guru at the network level using updated threat intelligence feeds. Avoid interacting with any URLs or QR codes associated with this domain, especially those claiming to offer hotel deals or booking services. If you have recently visited this site and connected a cryptocurrency wallet, revoke all active wallet connections immediately and transfer remaining funds to a secure, isolated wallet. Report the domain to your cybersecurity team and relevant authorities such as CERT or local cybercrime units to aid in ongoing takedown efforts. Stay vigilant against unsolicited links promising financial incentives.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: spahotel.guru
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain spahotel.guru behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 5 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of granguadalpbanus.spahotel.guru · checked Apr 19, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога