navigg[.]pro
“NAVI - Official Website”
navigg.pro — 内容不可用. 诈骗类型:Impersonation. 证据摘要: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 6 alerts; Spamhaus DBL_PHISH; 1 external blocklist match (DiscordPhishing); CF Radar malicious; PhishDestroy score 100/100. 注册商: Web Commerce Communica….
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain navigg.pro confirms it as an active phishing endpoint targeting user credentials. Registered on March 12, 2026, through Web Commerce Communications Limited (WebNic.cc), the domain resolves to the IP address 192.162.199.140 and is hosted on nameservers ns1.eternitynames.net, ns2.eternitynames.net, ns3.eternitynames.net, and ns4.eternitynames.net. As of July 20, 2026, the domain remains operational and has been flagged by 18 of 91 security vendors on VirusTotal, indicating broad detection across multiple threat intelligence platforms. It appears on two security blocklists and has been included in six AlienVault OTX threat intelligence pulses, further corroborating its malicious classification. The domain is explicitly blocked by PhishDestroy and DiscordPhishing, suggesting it has been used in credential harvesting campaigns, potentially targeting users on communication platforms. No specific brand impersonation or phishing kit has been confirmed in available data, and the exact content or target of the phishing page remains unanalyzed. Infrastructure analysis reveals no SSL certificate details or HTTP response data at this time, limiting further technical assessment. Defenders should treat navigg.pro as a high-risk domain and implement blocking at the DNS or network perimeter level. Security teams are advised to monitor for connections to 192.162.199.140 and review logs for any interaction with the domain, particularly from endpoints accessing collaboration or social platforms. Given its continued activity and detection by multiple vendors, this domain poses a credible threat and warrants immediate containment measures.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | navigg.pro |
malicious | Sinkholed |
| OpenDNS | navigg.pro |
phishing | Phishing Block |
| DigiCert UltraDNS | navigg.pro |
malicious | Sinkholed |
| Hagezi Threat Feed | navigg.pro |
malicious | Sinkholed |
| Quad9 DNS | navigg.pro |
malicious | Sinkholed |
| DNS4EU | navigg.pro |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 置信度 100%OpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
存档证据
证据与外部报告
PD-20260720-6F16B9 Recipient: compliance_abuse@webnic.cc 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。