dpd[.]mtqvrpx[.]cfd
“dpd.mtqvrpx.cfd”
ملخص الأدلة
This domain, dpd.mtqvrpx.cfd, is identified as a high-risk brand impersonation phishing site targeting DPD, a well-known parcel delivery service. The site is designed to deceive users into entering sensitive information under the pretense of tracking a parcel or resolving a delivery issue. As of the latest assessment, the domain has been taken offline, though its infrastructure and historical activity remain relevant for security analysis. Analysis indicates the domain was flagged by 17 of 95 security vendors on VirusTotal, a notable indicator of malicious intent. It was registered through Aceville Pte. Ltd. on May 30, 2026, an unusually future-dated registration that may suggest domain spoofing or typosquatting tactics. The domain resolved to the IP address 104.21.11.200, which is associated with Cloudflare, a common obfuscation technique used to conceal the true hosting origin. Additionally, the domain appears on one security blocklist, and Google Safe Browsing has flagged it for social engineering. Technologies detected include Cloudflare and HTTP/3, further confirming the use of modern infrastructure to evade detection. Given the current offline status of dpd.mtqvrpx.cfd, immediate threats to users are mitigated. However, the domain's infrastructure and historical indicators warrant caution. Organizations and individuals are advised to block this domain at the network level to prevent potential future reactivation. Users who may have interacted with the site should monitor their accounts for unauthorized activity and consider resetting credentials for any services accessed during the suspected compromise. Security teams should treat this domain as a high-risk indicator and include it in threat intelligence feeds for proactive defense measures.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260601-A96E0A- عنوان الصفحة الملتقطة
- dpd.mtqvrpx.cfd/com/
- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Acceptable Use Policy (AUP): The domain dpd.mtqvrpx.cfd is actively engaged in phishing activities, which constitutes a clear violation of the AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the use of this domain for phishing directly contravenes this provision.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which is applicable as phishing schemes typically involve unauthorized access to personal information.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, which is relevant given the fraudulent nature of phishing attacks.
Anti-Phishing Consumer Protection Act: This legislation specifically targets phishing activities, making it illegal to engage in deceptive practices that mislead consumers.
Regulatory Note: Failure to take immediate action against this domain may result in liability for facilitating illegal activities, including potential fines and sanctions under applicable laws. It is imperative to comply with your AUP and TOS to avoid regulatory repercussions.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
14 ← 17
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
نطاق SHORTDOT · أدلة عامة
.cfd
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Registration: mtqvrpx.cfd
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain mtqvrpx.cfd behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدَت تقنيتان عاليتا الثقة
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب