The full anatomy of a phishing site,
one URL at a time.
ZeroPhish renders the page, runs twelve detection signals against the DOM, certificate chain, brand fingerprint and threat feeds, and returns a typed verdict. Built for security teams and product engineers.
No phishing signals detected
| URL | hxxps://one[.]dosugbarkrg[.]com/ | |
| Host | one[.]dosugbarkrg[.]com | |
| Registered domain | dosugbarkrg[.]com | |
| Brand | "" | |
| Screenshot | https://cdn.zerophish.ai/005f720a-4727-4d44-96d8-cd132b1bd38b.jpg | |
| Scan ID | 76abf30f-f813-4f4d-92ad-41d1652c52a5 |
| Host | one.dosugbarkrg.com |
| Registered domain | dosugbarkrg.com |
| Scheme | https |
| Content length | 280157 B |
| HTTP | 200 · text/html |
| DMARC policy | none |
| SPF policy | none |
| MX records | none |
What the page is presenting itself as
The page appears to be a Russian adult-services directory for “Проститутки Кургана” (sex work listings in Kurgan), branded as “DOSUGBAR / DOS GBAR,” with many user-generated profiles showing prices, phone numbers, and reviews.
Suspicious elements found (phishing-focused)
- No credential harvesting form in the provided HTML. The only visible authentication UI is a “Войти” (Log in) label, but the simplified HTML snippet does not include an actual username/password input form or submission endpoint tied to credential collection.
- No fake payment/security warning patterns. There are no UI elements resembling “your account has been compromised,” “verify to avoid closure,” or “urgent action required.”
-
Brand/URL relationship: The domain
one.dosugbarkrg.commatches the on-page branding “DOSUGBAR” and does not mimic a third-party brand like PayPal, Microsoft, or banks.
Why phishing is unlikely
Phishing sites commonly include credential submission forms, urgency/security scare messages, or impersonation of a well-known brand with a mismatched domain. In the given URL + HTML/OCR, the content is consistent with an adult directory/listing site, and the suspicious phishing indicators are absent.
Verdict
Legitimate (with caveats): While the site content is clearly adult-oriented and may involve privacy/safety risks typical of such platforms, the specific phishing indicators (credential-collection form harvesting, brand impersonation, fake security warnings) are not evidenced in the provided material.