cpcontacts[.]20-244-0-63[.]cprapid[.]com
“Sign in to Xfinity”
cpcontacts.20-244-0-63.cprapid.com — لم يتم التحقق منها. انتحال العلامة التجارية: Near; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 18/91 (Criminal IP, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. مسجّل النطاق: cPanel Rapid.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
The domain cpcontacts.20-244-0-63.cprapid.com is currently classified as high risk for phishing based on multiple indicators as of August 06, 2026. Technical analysis shows that the domain resolves to IP address 20.244.0.63 and remains active at this time. Security telemetry from VirusTotal reports that 14 out of 91 security vendors have flagged this domain for phishing, providing substantial consensus among threat detection engines. The domain has also been blocked by PhishDestroy and appears on at least one independent security blocklist, reinforcing the assessment of malicious intent or behavior.
The domain is registered via cPanel Rapid, a platform commonly used for rapid provisioning of hosting resources. Notably, its nameservers are not found, which may indicate an atypical or deliberately obscured DNS configuration. This DNS anomaly can be characteristic of domains used in phishing campaigns, as threat actors frequently manipulate DNS records to evade detection and takedown efforts.
There is no evidence in the available data regarding the specific web content, targeted brands, or scam type associated with this domain. The page title and content have not been analyzed, so defenders cannot yet confirm the exact tactics or lures being employed. However, the current technical and threat intelligence context justifies immediate defensive actions.
Defenders should block cpcontacts.20-244-0-63.cprapid.com and its resolving IP at both network and endpoint layers. Security teams are advised to monitor for any traffic to or from this domain, as well as investigate related infrastructure. Continued observation is recommended in case the domain’s status or associated indicators change. The domain should remain on blocklists until it is proven inactive and no longer presents a threat.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
Registration: cprapid.com
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain cprapid.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 1 identified
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of cpcontacts.20-244-0-63.cprapid.com · checked Aug 6, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب