Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@eukhost.com.
The latest stored availability evidence still shows the domain reachable; 21 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
atlassp[.]dz
“atlassp.dz/”
atlassp.dz — 未验证. 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 85/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain atlassp.dz shows an active infrastructure that matches a generic credential‑harvesting campaign. The domain resolves to the IPv4 address 109.203.100.50 and is serviced by the authoritative name servers ns4719.ukserverhosting.net and ns4720.ukserverhosting.net. The site’s HTTP response currently returns a page title of "atlassp.dz/", indicating that no further branding or target information has been observed in the title tag.
VirusTotal records indicate the domain has been submitted to 91 scanning engines, none of which have raised a detection at the time of this assessment; this lack of detection does not constitute a safety guarantee. The domain is listed on two public blocklists and has been explicitly blocked by PhishDestroy and SEAL, reinforcing the view that it is being used for malicious purposes. No SSL/TLS certificate details, HTTP status codes, or Safe Browsing verdicts are available in the supplied intelligence, and no additional indicators such as known phishing kits or victim reports have been disclosed.
Consequently, the primary observable evidence consists of the IP resolution, name‑server configuration, blocklist presence, and the generic page title. Defenders should consider adding atlassp.dz and its resolving IP address to network‑level deny lists, monitoring for any traffic to the associated name servers, and employing outbound filtering to block credential‑submission attempts to this host. Continuous re‑evaluation is advised, as future scans or threat‑intel feeds may reveal additional artifacts or confirm the target brand of the campaign.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 1 identified
VirusTotal 分析
存档证据
网站配置分析
证据与外部报告
PD-20260724-5F2F73 Recipient: abuse@eukhost.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。