Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@ipvendetta.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
indi23[.]com
Перевірка домену indi23.com на фішинг і безпеку
“AIToolsVoorZZP.nl – Onder Constructie”
indi23.com — Останній відомий активний (HTTP 200). Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 13/91 (alphaMountain.ai, BitDefender, Certego, CRDF, CyRadar); PhishDestroy score 99/100. Реєстратор: Fewmoretaps OU d/b/a T….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
This domain, indi23.com, is flagged as a generic phishing site impersonating AIToolsVoorZZP.nl, a legitimate Dutch AI tools platform. The page title "AIToolsVoorZZP.nl – Onder Constructie" suggests an attempt to deceive users into believing the site is under construction while likely harvesting login credentials or deploying malicious payloads. No specific drainer kit signatures were identified, but the domain exhibits classic phishing infrastructure characteristics. Analysis indicates the domain was registered on April 28, 2026, through Fewmoretaps OU d/b/a Trustname.com, a registrar with a history of hosting malicious domains. It resolves to the IP address 94.154.172.143, and VirusTotal reports 8 out of 95 security vendors flagging it as malicious. The domain appears on 2 security blocklists, and its Gridinsoft trust score is 0/100, reinforcing its high-risk classification. Google Safe Browsing (GSB) status was not explicitly provided, but the domain is currently offline. The domain has been taken offline, likely due to detection and reporting by security systems such as PhishDestroy and Maltrail. However, residual risk remains, as threat actors may re-deploy the infrastructure under a new domain or IP. Organizations should monitor for connections to 94.154.172.143 and block the domain at the DNS level. Users who interacted with the site should reset credentials and scan for malware, particularly if they entered sensitive information.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260428-4B2BF0 Recipient: abuse@ipvendetta.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.