ticerhmt[.]shop
“Messenger”
Зведення доказів
Analysis as of July 28, 2026 indicates that the domain ticerhmt.shop remains active and resolves to the IPv4 address 27.124.47.186. The domain’s authoritative name servers are listed as ns3.my-ndns.com and ns4.my-ndns.com, which are common shared DNS providers and do not reveal a dedicated hosting environment. VirusTotal reports that seven of ninety‑one scanned engines have flagged the domain, providing multi‑vendor confirmation of malicious activity.
The domain appears on at least one public blocklist and is specifically blocked by the PhishDestroy service, further corroborating its status as a high‑risk phishing infrastructure. No additional public intelligence such as Safe Browsing alerts, Open Threat Exchange references, SSL certificate details, HTTP response codes, or page‑title metadata is currently available, leaving the exact payload or credential‑capture tactics unverified. Defenders should prioritize immediate mitigation by adding ticerhmt.shop to outbound DNS blocklists, updating intrusion‑detection signatures to flag traffic to 27.124.47.186, and monitoring for any related C2 communications that may leverage the same IP range.
Continuous feed ingestion from blocklist providers, including PhishDestroy, is recommended to capture any future listings, and periodic re‑scans of the domain on VirusTotal or similar platforms should be scheduled to detect changes in detection ratios. Given the confirmed vendor detections and blocklist presence, the domain should be treated as a confirmed malicious phishing site and blocked at network perimeter and endpoint layers.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 13.08.2026
Хронологія виявлення
-
Перший запис
Перше збережене значення: Доступний
-
Статус домену
Доступний → Недоступний
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
Аналіз VirusTotal
Архівні докази
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога