Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
agrosabor[.]ec
“Agrosabor S.A.”
已存储的观测记录
观测到的标题差异
证据摘要
agrosabor.ec was registered on 2025-01-08 and is currently hosted on a Hetzner server in Germany (AS24940). The domain resolves to 167.235.182.68 and uses the name servers ns17.hostingcolor.com, ns18.hostingcolor.com, and ns19.hostingcolor.com. The site presents a page titled “Agrosabor S.A.” and serves content over HTTPS with a Let’s Encrypt certificate. Technical fingerprints show an Apache HTTP server running PHP, with front‑end libraries including Bootstrap, jQuery, Modernizr, and Google Maps integration. The domain appears on one security blocklist and has been flagged by PhishDestroy. VirusTotal records 15 of 95 scanned security vendors marking the site as malicious. Independent trust scoring services assign a Gridinsoft score of 0/100 and a Scamadviser score of 1/100, indicating extremely low credibility. The MX record points to agrosabor.ec itself, which is consistent with a minimal email setup often used by fraudulent operators. Analysis classifies the site as a cryptocurrency‑focused brand‑impersonation campaign targeting the brand “base”. The page mimics legitimate branding while directing visitors toward illicit cryptocurrency transactions. The combination of a recent registration date, low trust scores, and the presence of a known blocklist entry suggests an active high‑risk operation. Publicly available information does not reveal the exact content of the fraudulent pages or the payment mechanisms employed, leaving the full scope of the scam uncertain. Defenders should block the domain at network perimeters, update email filters to reject messages referencing agrosabor.ec, and monitor DNS queries for the associated IP address and name servers. Continuous re‑scanning with multi‑engine services is advised to capture any changes in the site's behavior. Organizations using the “base” brand should issue user warnings and enforce strict verification of any cryptocurrency requests originating from this domain.
已提交证据快照
- 已发送
- 台账记录
- 1
- 案件 ID
PD-20260318-8B74CF- 已捕获页面标题
- Agrosabor S.A.
- PDF 文件
- PDF 证据
完整证据文本
Acceptable Use Policy (AUP): The domain agrosabor.ec is engaged in phishing activities, which are explicitly prohibited under your AUP. This constitutes a direct violation of the policy against fraud and deception.
Terms of Service (TOS): The continued operation of this domain violates your TOS, which reserves the right to suspend or terminate services for any activities that are illegal or harmful, including phishing.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, including phishing schemes that deceive users into providing sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): This law makes it illegal to use electronic communications to execute a scheme to defraud, which applies to phishing operations.
Anti-Phishing Consumer Protection Act: This legislation aims to combat phishing by imposing penalties on those who engage in deceptive practices to obtain personal information.
Regulatory Note: Failure to take immediate action against this domain may result in liability for facilitating illegal activities, and could expose your organization to regulatory scrutiny and potential penalties. It is imperative to comply with your own policies and applicable laws to mitigate these risks.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | maps.googleapis.com/maps-api-v3/api/js/64/4d/intl/es_419/common.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | maps.googleapis.com/maps-api-v3/api/js/64/4d/common.js |
audit | Hunting_JS_WebAssembly |
| OpenDNS | agrosabor.ec |
phishing | Phishing Block |
| Hagezi Threat Feed | agrosabor.ec |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
VirusTotal
0 → 12
技术
识别出 6 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of agrosabor.ec · checked Mar 18, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控