Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@regtons.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
rmbnagpur[.]com
“Not Acceptable!”
rmbnagpur.com — Прикритий · доступний. Уособлення бренду: Adobe; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 19/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 2 alerts; URLScan malicious verdict; cloaking observed; PhishDestroy score 100/100. Реєстратор: Gransy, s.r.o.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, rmbnagpur.com, is flagged as an active credential harvesting phishing site posing an elevated risk to individuals and organizations. Analysis indicates the infrastructure is designed to mimic legitimate financial or corporate login portals, tricking users into submitting sensitive credentials such as usernames, passwords, and multifactor authentication codes. The threat type is classified as generic_phishing with a focus on credential theft, likely targeting customers of regional banks or financial services. Infrastructure analysis reveals the domain was registered on October 6, 2025, through Gransy, s.r.o., a registrar frequently associated with high-risk domains. It resolves to the IP address 162.241.123.17, which has been linked to multiple phishing campaigns in recent months. Detection engines on VirusTotal flag the domain as malicious, with 16 out of 95 security vendors marking it as phishing or fraudulent. The SSL certificate is issued by Let's Encrypt, a common choice for threat actors due to its free and automated issuance process. Gridinsoft's trust score for the domain is 0/100, further corroborating its malicious nature. Additional blocklists and threat intelligence feeds have also identified this domain as part of ongoing phishing operations. To mitigate risks associated with rmbnagpur.com, organizations should immediately block the domain and its resolving IP address (162.241.123.17) at the network perimeter using firewalls, DNS filters, or web proxies. End-users who may have interacted with the site should be instructed to reset credentials for any accounts entered on the page, particularly those associated with financial services. Security teams should monitor for indicators of compromise, including unusual login attempts or unauthorized transactions. If the domain is impersonating a specific brand or institution, affected entities should issue public advisories to warn their customers. Continuous monitoring of related infrastructure, such as newly registered domains under the same registrar or IP range, is recommended to identify potential follow-up campaigns.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 1 identified
Apache is a free and open-source cross-platform web server software.
httpd.apache.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of rmbnagpur.com · checked Jun 28, 2026
Докази та зовнішні звіти
PD-20260628-AD5AB5 Recipient: abuse@regtons.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога