Skip to security report
⚠️
This domain has been flagged as malicious
Security engines reporting a detection: 2. Exercise extreme caution — do not enter credentials or personal information.
Domain security and threat intelligence

fazpass[.]com

Phishing and security check for fazpass.com

Threat verdict Critical 96/100 evidence score
Availability Cloaked · reachable Reachability observed through cloaking checks
Risk signals
VirusTotal detections: 2/91 Last known active
2/91 VT OTX: 3 refs Jun 15, 2026 Cloaking CDN

Evidence Analysis

Stored analysis · Jul 12, 2026 Ref D8A530A0

The domain fazpass.com is currently classified as a high‑risk generic phishing infrastructure. It was created on May 01 2026 and remains active as of the report date, July 12 2026. The site returns an HTTP 403 status, indicating that direct content retrieval is denied. Infrastructure analysis shows the domain is hosted behind Cloudflare’s network, resolving to the IPv4 address 172.67.72.130 located in Canada and associated with Cloudflare, Inc. The authoritative nameservers are chance.ns.cloudflare.com and reza.ns.cloudflare.com. Registration was performed through PT Biznet GIO Nusantara, and the TLS certificate is issued by Google Trust Services under the WE1 designation, confirming the use of a valid, publicly trusted certificate. Detection telemetry indicates the domain appears on a single security blocklist and has been cited in three AlienVault OTX threat‑intelligence pulses. VirusTotal reports two of ninety‑five scanning engines flagging the domain, while Gridinsoft assigns a trust score of zero out of one hundred. The domain is also listed as blocked by PhishDestroy, reinforcing its malicious reputation. At present, the actual payload or page content hosted on fazpass.com has not been publicly disclosed, and no specific phishing kit or victim targeting information is available in the current intelligence set. Consequently, the exact tactics, techniques, and procedures employed by the operators remain unclear, limiting the granularity of threat attribution. Defenders should immediately incorporate fazpass.com into deny‑list rules across DNS filtering, proxy, and endpoint protection systems. Continuous monitoring of the associated IP address and its Cloudflare edge nodes is advised, as well as periodic re‑scanning with multi‑engine services to capture any emerging indicators. Coordination with blocklist providers to propagate the indicator will help mitigate further exposure.

VirusTotal
VirusTotal
2 det.
OTX references
TLS Certificate
Expired or unverified -59d
Age
3 mo
Observed status
Cloaked · reachable 403
PhishDestroy
DestroyList
Listed
Data coverage12 recorded checks
VirusTotal 2 / 91 URLQuery not checked PhishStats not checked OTX 3 community references CF Radar no data URLScan capture not submitted URLScan verdict verdict unavailable DNS blocks not checked TLS Expired or unverified WHOIS 3 mo old Screenshot not captured Redirect chain not probed

Threat Response Pipeline

Discovery
Checks
Reports
Availability
6/8

Public Blocklist Status

Domain Intelligence

Domain
Server / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Edge-IP reputation is not attributed to this domain.
Registrar PT Biznet GIO Nusantara
IP Address 172.67.72.130 CDN
GeoCA Toronto, CA
NetworkAS13335 · Cloudflare, Inc.
The origin IP is hidden behind a CDN proxy. Reverse-IP results for the edge address contain unrelated tenants; finding the origin requires passive DNS or certificate-transparency data.
RegistrationCreated May 1, 2026 (99d)
HTTP Status403 Forbidden
Cloaking Cloaking Detected Content divergence · score 2/6
cloudflare_challenge: raw=cf_challenge; http=403; via=https_proxy; server=cloudflare
server: cloudflare title: Just a moment...
checked Aug 9, 2026
Technical detailsDNS, SSL SANs, timestamps
First DetectedJun 15, 2026
Nameserversreza.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from Mar 13, 2026scanned May 2, 2026
ICANN OVERSIGHT

Accreditation and RAA context

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Nothing is sent automatically.
Report This Domain Submit evidence & help protect others

VirusTotal Analysis

2 / 91 security vendors flagged this domain
View on VT
Last analyzed First positive detection Previous stored snapshot: 0 detections
Evidence & External ReportsIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.

Europol
Find the official reporting channel for your EU country
National police directory
Beware of recovery scammers! Recovery scammers may pose as investigators, lawyers, or tracing services. Do not pay upfront fees or disclose credentials. Learn more about recovery fraud →

Report to Your Local Authorities

Select your country to get official cybercrime contacts, or create a complaint draft →.

97-country directory
Template-based draft • optional AI wording assistance requires separate consent Review and submit it yourself
Embed This ReportRead-only HTML widget
HTML · IFRAME

Embed This Report

Share this threat intelligence on your website or blog

embed.html
<iframe
  src="https://phishdestroy.io/embed/domain/fazpass.com"
  title="PhishDestroy threat report for fazpass.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

A Very Sincere Thank-You Note

Satirical draft generator

Recipient
Fee context

Satirical draft. Fee figures are estimates; exact attribution to this domain is not claimed.