Analysis as of July 28 2026 indicates that the domain copelandu.university was registered on July 27 2026 through NameCheap, Inc. The domain resolves to the IPv4 address 141.193.213.10 and is served by four AWS Route 53 nameservers (ns-1477.awsdns-56.org, ns-186.awsdns-23.com, ns-2000.awsdns-58.co.uk, ns-890.awsdns). The infrastructure is currently active and has been flagged by the PhishDestroy blocklist, appearing on one security blocklist. A VirusTotal scan performed by 91 anti‑malware vendors returned no detections at the time of scanning; this absence of detections does not constitute a safety guarantee.
No public SSL/TLS certificate details, HTTP response codes, or page‑title information have been disclosed, limiting visibility into the host’s content. The lack of additional intelligence such as Safe Browsing verdicts, Open Threat Exchange references, or known phishing kit signatures leaves the exact nature of the phishing campaign unconfirmed beyond the generic classification.
Defenders should treat the domain as suspicious: network‑level controls should block or monitor traffic to 141.193.213.10, DNS queries for copelandu.university should be logged, and any user‑initiated connections to the domain should be prevented pending further analysis. Continuous monitoring of the domain’s reputation on threat‑intel feeds is recommended, as the recent creation date and rapid appearance on a blocklist suggest an emerging threat actor infrastructure.