ontario[.]safedrivinggovaw[.]cc
ontario.safedrivinggovaw.cc — Неперевірений. Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 10/91 (BitDefender, CyRadar, Forcepoint ThreatSeeker, Fortinet, G-Data); PhishDestroy score 88/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy has identified the domain ontario.safedrivinggovaw.cc as part of a targeted phishing campaign impersonating official Ontario driver safety and licensing portals. This domain specifically engages in license renewal phishing, tricking users into submitting personal and financial details under the guise of mandatory driver’s license updates. As of the latest verification, the domain has been taken offline, though its previous activity remains a concern for those who may have interacted with it. Analysis of the domain reveals no detections from any of the 95 security vendors on VirusTotal, indicating it had not yet been widely flagged as malicious at the time of assessment. The domain resolved to the IP address 43.166.232.20, which has been associated with other low-reputation hosting environments. While registrar details and domain creation date are not publicly disclosed in this case, the lack of blocklist entries or trust scores further underscores its low visibility in threat intelligence feeds. The absence of red flags in automated systems suggests the campaign may have been short-lived or highly targeted, evading broader detection. At present, ontario.safedrivinggovaw.cc is confirmed to be offline, reducing immediate risk to users. However, individuals who received emails, text messages, or visited the site prior to its takedown should remain vigilant. It is recommended to monitor financial accounts for unauthorized activity, update passwords for any accounts potentially exposed, and report the incident to the Canadian Anti-Fraud Centre. Organizations should also consider adding the domain and its associated IP to internal blocklists to prevent future access. Users are advised to verify the legitimacy of any driver’s license renewal notices by visiting official government websites directly, rather than clicking links in unsolicited communications.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога