nowayeco[.]com
Перевірка домену nowayeco.com на фішинг і безпеку
“PayPal - Sicherheit bei Ihren Zahlungen”
nowayeco.com — Доступно · доступ обмежено (HTTP 403). Уособлення бренду: PayPal; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 20/91 (ADMINUSLabs, alphaMountain.ai, Bfore.Ai PreCrime, Cluster25, CRDF); URLQuery 6 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
The domain nowayeco.com has been assessed as posing an elevated risk due to its specific threat type of brand impersonation, targeting the well-known financial brand PayPal. Analysis indicates that the domain was created on May 21, 2026, and is currently active. The domain is registered through Cloudflare, Inc., and resolves to the IP address 104.21.64.103, which is located in California, USA, and is associated with Cloudflare, Inc. According to VirusTotal, 20 out of 95 security vendors have flagged this domain as malicious, suggesting a significant level of suspicion among the security community. The domain also appears on one security blocklist and has been blocked by PhishDestroy, a known security service. The SSL certificate for the domain is issued by Let's Encrypt, which is a common certificate authority used by both legitimate and malicious sites to establish secure connections.
Infrastructure analysis reveals that the domain nowayeco.com was created relatively recently, on May 21, 2026, which is often a red flag as newly registered domains can be indicative of ephemeral and malicious activities. The domain's SSL certificate, while legitimate, does not provide assurance of the site's trustworthiness, as it is issued by Let's Encrypt, a free and automated certificate authority. The IP address 104.21.64.103, associated with Cloudflare, Inc., is known for hosting a variety of websites, both benign and malicious. The domain's presence on one security blocklist and the detection by 20 security vendors on VirusTotal further underscore the elevated risk level. Additionally, the page title 'PayPal - Sicherheit bei Ihren Zahlungen' (PayPal - Security in Your Payments) is designed to mimic PayPal's official security page, increasing the likelihood of user deception.
To mitigate the risks associated with brand impersonation, users are advised to verify the URL of any page requesting sensitive information, such as login credentials or financial details. In this case, the official PayPal domain should be used, and any unexpected emails or messages directing to nowayeco.com should be treated with caution. Organizations and individuals should also consider implementing multi-factor authentication (MFA) for additional security. Network administrators are encouraged to add nowayeco.com to their blocklists and monitor for any attempt to access the domain. Regular security awareness training can help employees and users recognize the signs of phishing and avoid falling victim to such attacks.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | nowayeco.com |
malicious | Sinkholed |
| OpenDNS | nowayeco.com |
phishing | Phishing Block |
| DNS4EU | nowayeco.com |
malicious | Sinkholed |
| Hagezi Threat Feed | nowayeco.com |
malicious | Sinkholed |
| DigiCert UltraDNS | nowayeco.com |
malicious | Sinkholed |
| Quad9 DNS | nowayeco.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 5 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100% впевненостіExpress is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs.
expressjs.com 100% впевненостіCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of nowayeco.com · checked May 21, 2026
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.