federalism[.]org
“Supporting Public Understanding of Federalism | CSF”
Stored observation
Observed title contrast
Evidence Summary
The domain federalism.org is currently active and serves a page titled “Supporting Public Understanding of Federalism | CSF”. DNS resolution points to IP 198.12.252.201, hosted by GoDaddy.com, LLC, with authoritative nameservers ns61.domaincontrol.com and ns62.domaincontrol.com. The site presents a valid GoDaddy Secure Certificate Authority – G2 TLS certificate issued by GoDaddy.com, Inc. Email routing is configured via Microsoft 365 protection (federalism-org.mail.protection.outlook.com). HTTP requests receive a 200 OK response. Infrastructure evidence shows the domain has been referenced in two AlienVault OTX threat pulses and is listed on a single security blocklist. PhishDestroy has actively blocked the domain. VirusTotal analysis, performed by 91 scanning engines, returned no detections; the absence of detections does not constitute assurance of benign intent. The current classification is “generic phishing”, though no payload or credential‑capture page has been publicly disclosed. Given the observed infrastructure and blocklist activity, defenders should treat federalism.org as a potential phishing vector. Recommended actions include adding the domain and its hosting IP to outbound and inbound filtering rules, monitoring MX traffic for anomalous use, and continuing periodic scanning with multiple sandbox services. Further investigation is required to determine whether the live page hosts credential‑harvesting forms or redirects to malicious content.
Data Coverage
Network Security Intelligence
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 11, 2026
10 monitored external feeds No match
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive