Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@rackip.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
telewmvr[.]com
Перевірка домену telewmvr.com на фішинг і безпеку
“Messenger”
telewmvr.com — Останній відомий активний (HTTP 200). Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 2 det.; Google Safe Browsing flagged; Spamhaus DBL_SPAM; PhishDestroy score 100/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, telewmvr.com, is actively flagged as a high-risk phishing site impersonating a messaging service, as indicated by its page title 'Messenger' and SSL certificate labeled 'Telegram.' Registered on June 13, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, the domain resolves to the IP address 27.124.47.186. Analysis reveals it has been detected by 15 out of 95 security vendors on VirusTotal, with Google Safe Browsing specifically classifying it under 'SOCIAL_ENGINEERING.' The domain appears on three security blocklists, including PhishDestroy, InversionDNS, and BLP-Malware, and has been referenced in four threat intelligence pulses on AlienVault OTX, suggesting broader recognition of its malicious intent. Infrastructure examination shows the domain is still operational as of July 12, 2026, with no indications of takedown or mitigation efforts. The SSL certificate, while labeled 'Telegram,' does not provide conclusive evidence of direct affiliation with the legitimate service but aligns with common tactics used to lend credibility to phishing sites. The combination of a recent registration date, active hosting, and multiple security vendor detections supports the classification of this domain as a deliberate attempt to deceive users into interacting with fraudulent content. Defenders should prioritize blocking this domain at the DNS and network levels, particularly in environments where messaging services are commonly used. The presence of the domain on multiple blocklists and its consistent detection by security tools indicate a persistent threat. Organizations are advised to monitor for any attempts to access telewmvr.com from internal networks and to investigate potential credential harvesting or malware distribution tied to this infrastructure. Given the domain's active status and lack of legitimate use cases, immediate action to restrict access is recommended.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:45:06 UTC
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260629-7E2C02 Recipient: abuse@rackip.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога