txdmv[.]bcsgh[.]cc
“TxDMV Home | TxDMV.gov”
ملخص الأدلة
On 22 July 2026 the domain txdmv.bcsgh.cc was observed and subsequently taken offline. The site was registered on 21 February 2026 and immediately began serving content with the page title “TxDMV Home | TxDMV.gov”. The title suggests an attempt to masquerade as the Texas Department of Motor Vehicles, yet the listed brand target is American Express (Amex), indicating a hybrid brand‑impersonation campaign that may lure victims through a misleading URL while referencing a financial brand. The domain resolves to 104.21.76.222, an address hosted by Cloudflare (ASN 13335) located in the United States. SSL analysis shows the certificate labelled “WE1”, which is typical of automatically‑issued certificates and does not provide any indication of legitimate ownership.
Reputation services flag the domain as highly suspicious. Scamadviser assigns a trust score of 1 / 100, and Gridinsoft rates it 0 / 100. VirusTotal reports five positive detections out of ninety‑three scanned engines, confirming that multiple security products recognize malicious behavior. The domain appears on one external blocklist and is actively blocked by the PhishDestroy mitigation service. No further public threat‑intel feeds (OTX, Safe Browsing) were referenced in the available data.
Because the site is currently offline, direct content analysis is not possible; the exact payload, credential‑harvesting mechanisms, or malicious redirects remain unknown. However, the combination of a recent registration, low trust scores, a generic Cloudflare front‑end, and the presence of a brand‑impersonation label strongly suggests a phishing kit aimed at harvesting Amex credentials. Defenders should add the domain and its IP address to internal block lists, monitor for any future re‑registration of the same second‑level domain, and enforce strict outbound filtering for traffic to Cloudflare edge nodes that are not otherwise whitelisted.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب