bjgtp[.]cfd
“.”
This domain presents an elevated risk as a confirmed brand impersonation threat specifically targeting Google. The domain structure and configuration suggest an attempt to deceive users into believing they are interacting with legitimate Google services, potentially for credential theft or other fraudulent purposes. The domain's trust score of 0/100 from Gridinsoft further reinforces its malicious intent.
Infrastructure analysis reveals several critical indicators. The domain resolves to IPv6 address 2606:4700:3037::ac43:a0dc and was created on December 18, 2025, through NiceNIC International Group Co., Limited. It currently appears on 1 security blocklist, specifically PhishDestroy, and is in an offline status. VirusTotal analysis shows 3 out of 95 security vendors flagging this domain, indicating moderate detection across the security community. The page title was found to be empty, which is unusual for legitimate services.
For mitigation against this brand impersonation threat, users should avoid visiting this domain entirely. Organizations should add bjgtp.cfd to their web filtering and email security blocklists. Security teams should monitor for any subdomains or related domains registered through the same registrar or hosting infrastructure. Users should verify any Google-branded communications and access Google services only through official channels. Reporting this domain to additional threat intelligence platforms and security vendors can help expand detection coverage.
Erkenntnisse zur Netzwerksicherheit Registrar context
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 Quellen · synchronisiert am 10.08.2026
Erkennungszeitleiste
-
Cloudflare Radar
stage4.timeline.scan_saved · stage4.timeline.open_scan
-
VirusTotal
stage4.timeline.transition
-
Verfügbarkeit
stage4.timeline.first_value
f93a11f87e4d -
Verfügbarkeit
stage4.timeline.transition
25c711c458e5 -
Verfügbarkeit
stage4.timeline.transition
10f1c2b46da4 -
Verfügbarkeit
stage4.timeline.transition
f69af090fd4e -
Verfügbarkeit
stage4.timeline.transition
e3f69a99beb5 -
Verfügbarkeit
stage4.timeline.transition
f52d526b76a1 -
Verfügbarkeit
stage4.timeline.transition
6fcc1497cb1d -
Verfügbarkeit
stage4.timeline.transition
0386c09cd532
Alle anzeigen (9)
-
Verfügbarkeit
stage4.timeline.transition
1ce536309d67 -
Verfügbarkeit
stage4.timeline.transition
6dfe9145995c -
Verfügbarkeit
stage4.timeline.transition
7e021d9c92d5 -
Verfügbarkeit
stage4.timeline.transition
641ed81dc4d5 -
Verfügbarkeit
stage4.timeline.transition
a1d69da0ca01 -
Verfügbarkeit
stage4.timeline.transition
072311cdb466 -
Verfügbarkeit
stage4.timeline.transition
969c94319fcf -
Verfügbarkeit
stage4.timeline.transition
d0b7046e8c2f -
Verfügbarkeit
stage4.timeline.transition
e4217936e50f
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, TLS-Namen und Zeitstempel
SHORTDOT-ZONE · ÖFFENTLICHE BELEGE
.cfd
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt