ScamLens
Brand Impersonation Warning

Lookalike Domain (spotify.com)

Cached < 6hAnonymous (3/day)

Security Report for spotify-accounts-login.callora.cz

ScamLens analyzed spotify-accounts-login.callora.cz using 90+ threat intelligence sources and assigned a trust score of 0/100, classifying it as dangerous.

Trust Score: 0/100

Risk Level: Dangerous

This domain behaves more like an impersonation or spoofing entry point. Do not log in, pay, or call any number shown on the site before you preserve the spoofing and communication evidence.

Site Title
Domain Default page
Website meta information unavailable
enHTTPS ✓
1
Checked 1 times

Quick Answer

This domain behaves more like an impersonation or spoofing entry point. Do not log in, pay, or call any number shown on the site before you preserve the spoofing and communication evidence.

Positive Signals

  • +Valid SSL certificate
  • +HTTPS encryption supported

Concerns

  • -Possible impersonation of spotify.com
  • -Google Safe Browsing: Flagged as dangerous
  • -5 security sources flagged as suspicious

Score Breakdown

Domain Reputation50
Threat Intelligence42
13/18 safeSafeBrowsing flagged
Technical Security75
Valid SSLHTTPS
Community Reputation50
No community data yet

Was this assessment accurate?

0 say Safe0 say Suspicious
What do you think?
What to do next

spotify-accounts-login.callora.cz is confirmed malicious

Multiple threat-intelligence feeds agree this domain is dangerous. Treat any data you entered as compromised.

Confidence:High
  1. Close the tab immediately
    Continued browsing increases the chance of drive-by downloads, exploit kits, or session hijacking.
  2. Run a full antivirus / malware scan
    If the site loaded scripts, scan your device. Update your OS and browser to the latest version first.
  3. Change passwords for any account you entered
    Rotate the password and enable two-factor authentication on the real site. Watch for unauthorised charges over the next 30 days.
  4. Report the incident
    Reporting helps blocklists update faster and protects other potential victims.
Cross-check with independent scanners

Trust but verify — open this domain on unrelated security services and compare the verdict.

Sign in to run the AI risk analysis

The threat-intelligence signals below are available to everyone. The plain-language AI risk summary is generated on demand for signed-in users — sign in (free) to run it for this domain.

Threat-intelligence sources

Checked across 22 sources — 5 flagged this domain

Show source breakdown
  • safe_browsingflagged
  • urlhausclean
  • cloudflare_radarclean
  • cert_transparencyclean
  • alienvault_otxclean
  • phishstatsclean
  • phishdestroyflagged
  • threatfoxclean
  • shodan_internetdbclean
  • phishtankclean
  • rdapclean
  • maltiverseflagged
  • dns_securityflagged
  • wanted_domainsclean
  • darkwebclean
  • openphishflagged
  • scam_blocklistclean
  • maltrailclean
  • crypto_scam_feedclean
  • phishing_armyclean
  • hagezi_tifclean
  • red_flag_domainsclean

ScamLens aggregates real-time signals from 90+ commercial and open-source threat-intelligence providers including Google Safe Browsing, VirusTotal, PhishTank, URLhaus, ThreatFox, Cloudflare Radar, OTX, IPQS, GoPlus, Honeypot.is, and more. A flagged signal is evidence; the absence of flags is not proof of safety. Use the signals below alongside community reports to decide.

Advanced Scan

Comprehensive data lookup across premium sources

$2.99one-time payment
  • Website history verification
  • Detailed WHOIS information
  • Reverse WHOIS association
  • Traffic rank analysis
  • Company registration check
Recommended

AI Deep Investigation

Cross-check the story, claims, and supporting evidence before you decide

$4.99one-time payment
  • Everything in Advanced Scan
  • AI website content analysis
  • AI cross-reference verification
  • Claim authenticity validation
  • Detailed report with evidence
Most Thorough

Comprehensive Investigation

Full-spectrum investigation with company deep search & social intelligence

$14.99one-time payment
  • Everything in Deep Investigation
  • AI company background search
  • Social media intelligence
  • Detailed suspicious point analysis
  • Event timeline & entity connections

This analysis is for informational purposes only and does not constitute a legal determination.

Security Sources

Google Safe Browsing
Unsafe
Cloudflare Radar
Safe
URLhaus (abuse.ch)Confidence: Medium
Not Listed
Certificate TransparencyConfidence: Low
Not Listed
AlienVault OTXConfidence: Medium
Not Listed
PhishStatsConfidence: Low
Not Listed
PhishDestroyConfidence: High
Unsafe
ThreatFox (abuse.ch)Confidence: Low
Not Listed
Shodan InternetDBConfidence: Medium
Not Listed
PhishTankConfidence: Low
Not Listed
RDAP Domain RegistrationConfidence: Low
Not Listed
MaltiverseConfidence: Medium
Unsafe
DNS SecurityConfidence: High
Unsafe
Law EnforcementConfidence: Low
Not Listed
darkwebConfidence: Low
Not Listed
OpenPhishConfidence: Medium
Unsafe
Scam Blocklist (Jarelllama)Confidence: Low
Not Listed
Maltrail (stamparm)Confidence: Low
Not Listed
Crypto Scam FeedConfidence: Low
Not Listed
Phishing ArmyConfidence: Low
Not Listed
HaGeZi Threat IntelligenceConfidence: Low
Not Listed
Red Flag DomainsConfidence: Low
Not Listed

Domain Information

DNSSEC
Disabled

SSL/TLS Certificate

Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 24, 2026
Valid To
September 22, 2026
Status
Valid
SAN List
spotify-accounts-login.callora.cz

Server Information

IP Address
91.218.65.223
Hosting Provider
LIVINGBOTS
ASN
AS44486 synlinq.de
Server Location
Frankfurt am Main, Germany

Related Intelligence

Technical Details (DNS / Headers / Subdomains)

DNS Records

Email Security

SPF Not ConfiguredDMARC Not Configured
TypeValue
A91.218.65.223

HTTP Security Headers

0/6
Strict-Transport-SecurityMissing
Content-Security-PolicyMissing
X-Frame-OptionsMissing
X-Content-Type-OptionsMissing
Referrer-PolicyMissing
Permissions-PolicyMissing

Channels / Subdomains

No data available

Community Reports

Log in to report and share your experience

...

Report & Take Down This Website

The results are based on multiple third-party data sources and AI models. False positives or negatives may occur. This report should not be used as the sole basis for any decision. Please verify with additional sources.

Preserve the account and payment evidence first

If you already logged in, paid, or shared data, move into the victim action plan first and then complete the formal report.

Open the action plan

For impersonation sites, the priority is not more browsing. It is evidence preservation and loss containment.

Related Security Guides

Learn more about how to protect yourself from this type of threat.

Understanding this threat

FAQ

Is spotify-accounts-login.callora.cz safe to visit?

spotify-accounts-login.callora.cz received a trust score of 0/100 from ScamLens, indicating high risk. 5 threat intelligence sources flagged this domain as potentially dangerous. We strongly advise against visiting or sharing personal information.

Was spotify-accounts-login.callora.cz flagged by any threat databases?

spotify-accounts-login.callora.cz was flagged by 5 out of 30+ threat intelligence sources. Specifically flagged by: safe_browsing, phishdestroy, maltiverse, dns_security, openphish. The detected threat categories include: general threat.

How old is spotify-accounts-login.callora.cz?

Registration date information for spotify-accounts-login.callora.cz is not publicly available through WHOIS records, which can itself be a risk indicator.

Does spotify-accounts-login.callora.cz use HTTPS and have a valid SSL certificate?

spotify-accounts-login.callora.cz uses an SSL certificate issued by C=US, O=Let's Encrypt, CN=YR1, valid until September 22, 2026. The certificate is from a free provider (Let's Encrypt/ZeroSSL), which is common but does not validate the organization's identity.

What security headers does spotify-accounts-login.callora.cz implement?

spotify-accounts-login.callora.cz is missing important security headers: Content-Security-Policy, X-Frame-Options, X-Content-Type-Options, Strict-Transport-Security, Referrer-Policy, Permissions-Policy. Missing security headers can leave visitors vulnerable to cross-site scripting (XSS) and other web-based attacks.

What does the ScamLens community think about spotify-accounts-login.callora.cz?

No community votes or reports have been submitted for spotify-accounts-login.callora.cz yet. You can be the first to share your experience.

Where is spotify-accounts-login.callora.cz hosted?

spotify-accounts-login.callora.cz is hosted by LIVINGBOTS in Frankfurt am Main, Germany (ASN: ASAS44486 synlinq.de).

Is this report useful?

Use this report to warn others to stop logging in, paying, or contacting the listed support before they verify it.

Forward to your parents — they deserve to browse safely too.

About this analysis

This report is generated from real-time data across 90+ threat intelligence sources, combined with AI analysis and community feedback.

Learn about our scoring methodology | Last analyzed: July 29, 2026

All LIVINGBOTS domains