o-redirecting[.]com
Перевірка домену o-redirecting.com на фішинг і безпеку
o-redirecting.com — Помилка сервера (HTTP 502). Тип шахрайства: Banking Phishing. Зведення доказів: VirusTotal 4/91 (alphaMountain.ai, CRDF, Fortinet, Gridinsoft); Spamhaus DBL_SPAM; PhishDestroy score 65/100. Реєстратор: Tucows.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis as of July 25, 2026 shows that o-redirecting.com was registered through Tucows Domains Inc. on December 15, 2025 and is currently taken offline. The domain is delegated to Cloudflare’s authoritative name servers (amit.ns.cloudflare.com and dana.ns.cloudflare.com) and resolves to the IPv6 address 2a06:98c1:3121::3, which belongs to AS13335 Cloudflare, Inc., geographically located in the United States. No SSL certificate is associated with the host, indicating that the site does not serve HTTPS traffic. The domain appears on one security blocklist and is actively blocked by PhishDestroy.
Independent reputation scoring from Gridinsoft assigns a trust score of 0 out of 100, reflecting an extremely poor reputation. VirusTotal has scanned the domain, with two of ninety‑three security vendors flagging it as malicious, corroborating the presence of hostile activity. The observed phishing kit is identified as an Airdrop Scam, a tool commonly employed for banking‑related credential harvesting. The scam type is recorded as Banking Phishing, although no specific financial institution is disclosed in the available intelligence.
Because the site is offline, page‑level details such as title, content, or login forms have not been captured, leaving the exact visual lure and credential‑capture mechanisms uncertain. Defenders should immediately block o-redirecting.com at the DNS and network layers, add the associated IPv6 address to firewall deny lists, and monitor the Cloudflare ASN for any related domains or re‑activation attempts. Threat‑intelligence feeds should be updated to include the domain, its registrar, and hosting details to improve detection across endpoint and email protection solutions. Users should be warned that unsolicited messages promising airdrops or crypto giveaways that direct to this domain are likely malicious and should be ignored.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога