sunriserechnungen[.]flazio[.]com
“403 Forbidden”
sunriserechnungen.flazio.com — Неперевірений. Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, ESET); PhishDestroy score 92/100. Реєстратор: Tucows.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, sunriserechnungen.flazio.com, is flagged as an elevated-risk phishing site specializing in fake invoice scams. Analysis indicates the infrastructure is designed to impersonate legitimate billing portals, tricking recipients into submitting financial credentials or payment details under false pretenses. The threat type aligns with credential harvesting campaigns that leverage urgency and authenticity cues to bypass user scrutiny. Infrastructure analysis reveals the domain resolves to IP address 35.190.27.135, hosted on a US-based cloud provider. It was registered through Tucows Domains Inc. on May 04, 2026, an unusually future-dated creation that may indicate domain spoofing techniques. VirusTotal detection metrics show 16 out of 95 security vendors flagging the domain, while it appears on one security blocklist. The SSL certificate is issued by Let's Encrypt (R12), providing a veneer of legitimacy despite the malicious intent. Current status indicates the domain has been taken offline, though historical activity remains a concern. Mitigation against fake invoice phishing requires multi-layered defenses. Organizations should implement email filtering rules to quarantine messages containing unexpected invoice attachments or links to subdomains of known website builders. Endpoint protection should be configured to block connections to newly registered domains or those with low reputation scores. Users should be trained to verify sender addresses, cross-check invoice details with known vendors, and avoid entering credentials on pages reached via email links. Domain registrars and hosting providers should monitor for suspicious patterns, such as future-dated domain registrations or clusters of similarly named subdomains.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: flazio.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain flazio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога