istadentalclinic[.]com
“Главная - Istadental”
istadentalclinic.com — Неперевірений. Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 3/91 (Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 76/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of www.istadentalclinic.com indicates a confirmed phishing site targeting users seeking dental services. The domain, registered on May 5, 2022, through a major registrar, currently resolves to IP address 94.73.147.32. The page title, 'Главная - Istadental,' suggests a focus on Russian-speaking users, though the site may serve broader audiences. Two independent security blocklists, including PhishDestroy and BLP-Malware, have flagged this domain, reinforcing its classification as high-risk. Additionally, the domain appears in two AlienVault OTX threat intelligence pulses, further corroborating its malicious nature. Technical indicators reveal limited but consistent detection. VirusTotal reports that 2 out of 95 security vendors have flagged the domain, a modest but notable signal given the low baseline detection rate for newer or evasive phishing sites. The SSL certificate, issued by Sectigo Limited, does not mitigate the risk, as phishing sites frequently use valid certificates to appear legitimate. The domain's trust score of 0/100 from Gridinsoft aligns with its presence on multiple blocklists, indicating a lack of reputable activity or associations. Defenders should prioritize this domain for immediate blocking at the network and endpoint levels. The infrastructure, while not tied to known phishing kits or advanced threat actors, remains active and capable of harvesting credentials or distributing malicious payloads. Organizations should monitor for related domains registered through the same registrar or resolving to the same IP range, as these may represent additional attack vectors. Given the domain's age and persistent activity, it is unlikely to be a short-lived campaign, warranting sustained vigilance.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіOpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога