MALICIOUS — CRITICAL
nesine-az.com — Generic Phishing Investigation Report
nesine-az[.]
Analysis indicates that the domain nesine-az.com was registered on 10 May 2026 through Realtime Register B.V.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- Доступність
- Контент недоступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
nesine-az.com — Контент недоступний (HTTP 502). Зведення доказів: VirusTotal 3/91 (Bfore.Ai PreCrime, SOCRadar); PhishDestroy score 71/100. Реєстратор: Realtime.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
Analysis indicates that the domain nesine-az.com was registered on 10 May 2026 through Realtime Register B.V. and is currently hosted on Cloudflare nameservers (algin.ns.cloudflare.com, edna.ns.cloudflare.com). DNS resolution points to the IPv4 address 188.114.96.3. VirusTotal has recorded detections from 2 of 91 scanning engines, confirming that at least a minority of security products consider the domain malicious. The threat classification is generic_phishing, and the risk rating is high. The domain remains active as of 16 July 2026. No public content or page metadata has been disclosed, so the exact phishing lure, target brand, or credential‑capture technique cannot be confirmed at this stage. The limited detection count suggests that many scanners have not yet flagged the site, which may allow it to evade early‑warning feeds. Defenders should add nesine-az.com to blocklists for inbound and outbound traffic, enforce DNS‑level filtering, and consider sinkholing the associated IP address 188.114.96.3. Continuous monitoring of the domain’s DNS records and any future VirusTotal submissions is recommended to detect changes in detection rates or additional infrastructure. Incident response teams should treat any credential submissions to this domain as potentially compromised and advise affected users to reset passwords immediately.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних12 recorded checks
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260717-EF2F27 Recipient: rtr-security-threats@realtimeregister.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.