growshift.digital
“Новый руководитель инвестиционного направления сделал важное обращение к гражданам.”
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@dynadot.com.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
growshift.digital — Неперевірений. Уособлення бренду: Genericnews; Тип шахрайства: Impersonation. Зведення доказів: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, ESET); URLQuery 2 alerts; URLScan malicious verdict; Spamhaus DBL_SPAM; PhishDestroy score 100/100. Реєстратор: Dynadot.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Зведення доказів
Analysis of the domain growshift.digital indicates it is an active phishing infrastructure currently under investigation. Registered on December 28, 2025, through Dynadot Inc, the domain resolves to the IP address 77.90.185.84. Infrastructure analysis reveals the use of Cloudflare nameservers (abby.ns.cloudflare.com and anuj.ns.cloudflare.com), a common tactic to obscure hosting origins and evade initial detection. The domain appears on one security blocklist, specifically PhishDestroy, which suggests prior identification as malicious, though the exact nature of the threat remains unverified. No detections were recorded by the 95 vendors that scanned the domain on VirusTotal, though this absence does not confirm safety. The domain's content has not been fully analyzed, and no specific brand impersonation or scam category has been confirmed. Defenders should treat this domain as high-risk due to its presence on a security blocklist and the use of Cloudflare for nameserver obfuscation. Network-level blocking at the IP and domain level is recommended, alongside monitoring for connections to 77.90.185.84. Further investigation is required to determine the exact phishing methodology, target audience, or potential credential harvesting tactics employed by this infrastructure. Organizations should correlate logs for any interactions with growshift.digital and report additional indicators to threat intelligence platforms.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз виявлення та ухилення
Перевірка маскування та розподілу трафіку
Ще не відскановано
Наразі не зафіксовано жодних відмінностей між роботами-павуками та браузерами
Збережені дані спостережень за взаємодією веб-сканера та браузера для цього хоста, а також перевірка відбитків у режимі реального часу для систем розподілу трафіку типу «Кейтаро».
- Збережений прапор маскування
- Ще не відскановано
- Останнє сканування маскування
Примітка щодо сканера: timeout: raw=timeout; http=0; via=http_proxy; error=HTTPConnectionPool(host='152.232.14.227', port=7358): Read timed out. (read timeout=7)
Збережений знімок · 3 sources
Аналітика доменів
Технічні подробиціDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 6 identified
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of growshift.digital · checked Jul 20, 2026
Докази та зовнішні звіти
PD-20260720-FD10C4 Recipient: abuse@dynadot.com Abuse notice text as sent to the provider
Registrar: Dynadot LLC / Dynadot Inc (United States) Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога