nomine[.]ro
Перевірка домену nomine.ro на фішинг і безпеку
“Index of /”
nomine.ro — Останній відомий активний (HTTP 200). Уособлення бренду: Google; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 16/94 (ADMINUSLabs, alphaMountain.ai, Cluster25, CRDF, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 100/100. Реєстратор: TERON SYSTEMS SRL.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain nomine.ro, registered on April 14 2026 through TERON SYSTEMS SRL, resolves to the IPv4 address 195.20.203.130, which is geolocated to Romania and associated with the same registrar. Authoritative name servers ns1.teron.ro through ns4.teron.ro serve the zone, indicating that the infrastructure is fully hosted by the registrar’s network. The site presents an HTTP 200 response with the generic page title "Index of /" and is served by Nginx. A Let's Encrypt R13 certificate is active, confirming that TLS termination is correctly configured but offering no indication of malicious content.
Malware and URL scanning services have flagged the domain: sixteen of ninety‑four vendors on VirusTotal reported it as malicious, and the domain appears on a single security blocklist. PhishDestroy has explicitly blocked the host, and Google Safe Browsing classifies it as a social‑engineering threat, consistent with the recorded scam type of brand impersonation targeting Google. The domain’s MX record points to itself, a pattern often observed in phishing infrastructure to simplify email spoofing. Gridinsoft assigns a trust score of zero out of one hundred, reinforcing the low‑reputation assessment.
Although the site has been taken offline, the observable infrastructure—dedicated name servers, a self‑referencing MX, a valid TLS certificate, and multiple vendor detections—provides concrete evidence of a high‑risk, Google‑impersonation campaign. Defenders should continue to block the domain at network perimeters, add it to internal blocklists, monitor the associated IP for any resurgence of activity, and consider reporting the case to relevant threat‑intel sharing platforms. Ongoing vigilance is advised because the offline status may be temporary and the underlying infrastructure remains under the control of the threat actor.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 1 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of nomine.ro · checked Apr 14, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога