connect-app[.]center
“Just Pomodoro”
The domain connect-app.center was registered on February 22, 2026 through NiceNIC International Group Co., Limited and is currently taken offline. DNS resolution points to the IPv4 address 198.177.125.196, which belongs to AS22612 (Namecheap, Inc.) in the United States. The authoritative name servers are ns3.my-ndns.com and ns4.my-ndns.com. The site presented the page title "Just Pomodoro" and employed an Apache HTTP Server fronted by Cloudflare, with client‑side libraries including jQuery, Font Awesome, and cdnjs.
TLS is provided by a Let’s Encrypt certificate (R13). VirusTotal analysis shows that three of ninety‑five security vendors flagged the domain, indicating a modest detection consensus. The domain appears on a single external blocklist and is specifically listed by PhishDestroy as a malicious entry. No additional intelligence, such as Safe Browsing or OTX references, is available, and the exact phishing lure or targeted brand has not been disclosed in the collected data.
Defenders should block the domain at perimeter firewalls and proxy devices, add the IP address 198.177.125.196 to deny‑list entries, and ensure that any internal clients that may have cached the site are cleared. Continuous monitoring of the associated IP range and name servers is advised, as the infrastructure could be repurposed for future campaigns. Incident response teams should also verify that no credential harvesting or malware downloads occurred on internal hosts that accessed the domain before it was taken offline.
Network Security Intelligence Registrar context
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-31 02:41:31 UTC
Technologies · 5 identified
Apache is a free and open-source cross-platform web server software.
httpd.apache.org 100% confidenceCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% confidencejQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% confidenceVirusTotal Analysis
Archived Evidence
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive