omgexplolts.com

omgexplolts.com is a 19-day-old domain presenting an authorization gate that multiple antivirus engines flag as malicious.

Critical Risk
Phishing / Credential Theft

At a glance

Antivirus · registration · identity
Antivirus detections
21 flagged
18 malicious · 3 suspicious
alphaMountain.ai
Domain registration
Jul 1, 2026Registered
19 days oldAt scan time
Operator identity
Missing
No independently verifiable operator identity
Verified factsSaved with this scan
  1. 18 engines classified the URL as malicious and 3 as suspicious; 43 returned harmless, 28 returned undetected, and 0 returned no usable result.
  2. Operator identity: Missing. No independently verifiable operator identity
  3. The domain was registered Jul 1, 2026 and was 19 days old at scan time.
  4. Google Safe Browsing returned no listed threat categories for this address at scan time.
  5. The isolated page observation recorded 0 requests and did not mark the page as malicious.

Intelligence

The site at omgexplolts.com serves a minimal authorization gate with no contact details or operator identity, on a domain registered just 19 days earlier. Eighteen antivirus engines classify the URL as malicious, and the gate structure itself can be used to hide the actual payload or destination from visitors.

Evidence Map

Reputation
Concern

One or more reputation sources recorded a concern

Identity
Limited

No independently verifiable operator identity

Behavior
Limited

Only partial behavior evidence was available

History
Observed

The domain was registered Jul 1, 2026 and was 19 days old at scan time.

Risk Factors
  • 1Domain registered only 19 days ago with no ownership transparency
  • 218 antivirus engines flag the URL as malicious
  • 3Authorization gate structure can conceal the true destination or payload

Domain and registration

The domain omgexplolts.com was registered on July 1, 2026 and was 19 days old at the time of analysis. No operator identity or ownership transparency was observed, and registration privacy protection was not recorded in the saved record.

Page behavior and visitor journey

The captured page shows the title "App" and the message "App Access Required This resource requires authorization. If you believe this is an error, please contact support." No login form, countdown timer, or notification bait was present. The redirect path recorded zero hops and remained on the same domain.

Security signals

Eighteen antivirus engines classified the URL as malicious and three as suspicious. The listed engines include alphaMountain.ai, AlphaSOC, BitDefender, Chong Lua Dao, CRDF, and CyRadar. Google Safe Browsing returned no listed threat categories at scan time. The hosting IP carried an abuse-confidence score of 0/100 from zero reports, and the site presented a valid TLSv1.3 certificate.

Observed contact and transparency gaps

The page contained zero domain emails, free-mail addresses, phone numbers, postal addresses, or social links. Three explicit concerns were noted: no contact email, no phone number, and no postal address visible anywhere on the page.

Web Research

Independent public research was unavailable for this scan.

Threat Detection

Antivirus results, browser warnings, isolated page observations, and the threat pattern identified in this report.

Antivirus distribution
Recorded engine classifications, not a blanket clean bill
92 engines
Malicious18
Suspicious3
Harmless43
Undetected28
No result0
Antivirus consensus

Antivirus engine results

Result date Jul 21, 2026
Detection matrix
21 engines flagged this URL

This scan saved classifications from an antivirus network of 92 engines. Each malicious or suspicious classification is listed below by engine name and should be weighed with the rest of the report.

18Malicious3Suspicious43Harmless28Undetected0No result92Engines
0
of 92
alphaMountain.ai
Malicious· malicious
AlphaSOC
Malicious· malware
BitDefender
Malicious· phishing
Chong Lua Dao
Malicious· malicious
CRDF
Malicious· malicious
CyRadar
Malicious· phishing
Forcepoint ThreatSeeker
Malicious· phishing
G-Data
Malicious· phishing
Gridinsoft
Malicious· phishing
Kaspersky
Malicious· malware
LevelBlue
Malicious· phishing
Lionic
Malicious· malicious
MalwareURL
Malicious· malware
Rising
Malicious· malicious
SOCRadar
Malicious· phishing
Sophos
Malicious· malware
VIPRE
Malicious· malware
Webroot
Malicious· malicious
Certego
Suspicious· suspicious
ESET
Suspicious· suspicious
Fortinet
Suspicious· spam

21 antivirus engines flagged this URL. A single classification is not consensus by itself. Review its label together with the page, identity, behavior, and history evidence shown in this report.

Threat pattern
Phishing / Credential Theft
Threat tags
malware
Top reasons

Evidence behind this threat profile

3 reasons
  1. 1Domain registered only 19 days ago with no ownership transparency
  2. 218 antivirus engines flag the URL as malicious
  3. 3Authorization gate structure can conceal the true destination or payload
Scam-Type Likelihood

2 of 21 categories showed signals

This profile separates the site's primary threat from other patterns supported by the saved page evidence, public research, and security findings.

Top match: Malware
Malware
High likelihood
82/100
  • 18/92 AV engines explicitly flagged the domain as malicious or phishing
  • Newly registered domain (19 days) with no legitimate signals or contact details
  • Page text is a minimal authorization gate consistent with cloaked redirectors used in malware campaigns
Phishing
Moderate likelihood
35/100
  • BitDefender and CyRadar labeled the URL as phishing
  • No login form or credential fields visible on the scanned page

Technical Details

Identity, domain, infrastructure, and connection facts saved with this scan.

July 21, 2026 at 5:41 AM UTC

Identity

6 facts
Operator
Missing
On-domain email
Not observed
Other email
Not observed
Phone
Not observed
Postal address
Not observed
Social profiles
Not observed

Domain

8 facts
Domain age
19 days old
Registered
Jul 1, 2026
Registrar
Dynadot Inc
Expires
Jul 1, 2027
WHOIS updated
Jul 1, 2026
Registrant
Unavailable
Registration country
Unavailable
WHOIS privacy
Not observed

Infrastructure

14 facts
HTTPS
Valid certificate
TLS protocol
TLSv1.3
Certificate issuer
Google Trust Services · WE1
Certificate subject
omgexplolts.com
Certificate valid from
Jul 1, 2026
Certificate valid to
Sep 29, 2026
Network address
188.114.97.3
ASN
AS13335
Hosting organization
CLOUDFLARENET - Cloudflare, Inc., US
Country
US
Server
cloudflare
Site platform
Unavailable
IP reputation
0% confidence · 0 reports
Tor exit node
No

Connections

13 facts
Scan scope
Specific page
Destination host
omgexplolts.com
Redirects
0
Cross-domain redirect
No
Redirect status codes
403
Lookalike characters
Not observed
Internationalized domain
No
Page response
200
Observation coverage
Complete
Extracted links
0
Unique IPs contacted
0
Countries contacted
1
Referenced domains
1

What to do

1
Before interacting
Do not sign in

Do not visit or click the link. The domain is newly registered, lacks any verifiable operator identity, and is flagged by multiple antivirus engines.

2
If you already interacted

If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.

Final Verdict

Do not sign in

Why this verdict

The verdict is malicious because the domain was registered only 19 days ago with no visible ownership transparency and 18 antivirus engines flag the URL as malicious, while the page shows an authorization gate that can conceal the true destination.

Recommendation

Do not visit or click the link. The domain is newly registered, lacks any verifiable operator identity, and is flagged by multiple antivirus engines.

Key evidence

  1. 1Domain registered only 19 days ago with no ownership transparency
  2. 218 antivirus engines flag the URL as malicious
  3. 3Authorization gate structure can conceal the true destination or payload
Evidence: strongScope: Specific pageFresh scan: July 21, 2026 at 5:41 AM UTC

Safety FAQ

Is omgexplolts.com safe to use?+

The verdict is malicious because the domain was registered only 19 days ago with no visible ownership transparency and 18 antivirus engines flag the URL as malicious, while the page shows an authorization gate that can conceal the true destination.

What should I do about omgexplolts.com?+

Do not visit or click the link. The domain is newly registered, lacks any verifiable operator identity, and is flagged by multiple antivirus engines.

How old is omgexplolts.com?+

omgexplolts.com is 19 days old and was registered jul 1, 2026.

What if I already interacted with omgexplolts.com?+

If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.

When was this report updated?+

This report reflects the scan completed July 21, 2026 at 5:41 AM UTC.