verifyguest72125-booking[.]com
verifyguest72125-booking.com — Контент недоступний. Зведення доказів: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); PhishDestroy score 95/100. Реєстратор: Hello Internet.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain verifyguest72125-booking.com was registered through Hello Internet Corp on June 12, 2026 and is currently active. Its authoritative name servers are ns100.webnic.cc and ns101.webnic.cc, both belonging to the WebNIC hosting platform. VirusTotal records show that 15 of 91 security vendors have flagged the domain as malicious, indicating a consensus of detection across multiple engines. The domain appears on a single external blocklist and has been explicitly blocked by the PhishDestroy feed, reinforcing its classification as a credential‑phishing site.
No additional intelligence such as SSL certificate details, HTTP response codes, or page title information is available at this time. Analysis of the available indicators points to a credential‑phishing campaign that likely harvests login credentials for booking‑related services, as suggested by the domain name. The elevated risk rating reflects the combination of vendor detections, blocklist inclusion, and the recent creation date, which is typical of fast‑flux or short‑lived phishing infrastructure.
Defenders should add the domain to network and DNS blocklists, enforce outbound filtering to prevent connections to the identified name servers, and monitor for any outbound traffic to the associated IP ranges. Continuous re‑scanning on VirusTotal and periodic checks against additional threat feeds are recommended to capture any changes in the domain’s behavior or additional detections. Organizations that use corporate credentials for travel or reservation platforms should alert users to the possibility of credential‑theft attempts and encourage the use of multi‑factor authentication where possible.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога