Phishing detection: allegro.pl-ogloszenie8913.icu
Allegro Investigate
Domain
allegro.pl-ogloszenie8913.icu0 CT hosts on apex
IP
188.114.96.3
URL
http://allegro.pl-ogloszenie8913.icu
Cert
WE1
Phishunt analysis Beta
41
high suspicion likely_phishingheuristic risk score · not a probability
Why?
- +5.3 Keyword match
- +5.1 Site cluster
- +4.5 Brand in title
- +4.1 Brand in screenshot
- +4.0 Young domain
- +3.4 Shared IP cluster
- +3.0 PhishTank
- +2.6 Brand in subdomain
- +2.2 Country mismatch
- +1.8 ASN reputation
- +0.9 Young certificate
- +0.9 No registrar lock
- +0.9 Suspicious TLD
- +0.6 Long domain
- +0.6 Final host mismatch
- +0.6 Registrar reputation
- +0.3 Free CA
- +0.1 Hyphens
- +0.1 External scripts
- +0.1 Deep subdomain
24 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting
Impersonates Allegro by embedding the brand name directly in the subdomain of a .icu domain. Confirmed malicious on PhishTank. Targets Polish marketplace users to harvest account credentials or payment information. Registered through Global Domain Group and routed via Cloudflare.
PhishTankBrand in subdomainKeyword match
AI-generated from stored detector signals - the AI never visited the site. · 2026-08-28 · confidence 90%
Domain & Network
Whois
Registrar
Global Domain Group LLC
Network
IP
188.114.96.3
Country
United States
Hosting
Cloudflare, Inc.
ASN
AS13335
TLS Cert
WE1
External detection
PhishTank
CleanGoogle Safe Browsing · OpenPhish · TweetFeed · urlscan.io · SANS ISC
Campaign
Requests
Resources
Observables
Related websites
Report this phishing
Submit to blocklists
urlscan
VirusTotal
Whois
ipinfo
Greynoise