fl[.]hxdmv[.]cc
“hxdmv.cc | 520: Web server is returning an unknown error”
Evidence Summary
Analysis of fl.hxdmv.cc indicates an active generic phishing infrastructure with an elevated risk rating. The domain was registered on June 12, 2026 through Dominet (HK) Limited, and it currently resolves to the IP address 172.67.152.247, a range commonly associated with Cloudflare edge services. VirusTotal records show that 14 of 91 security vendors have flagged the domain, demonstrating a measurable level of detection across multiple anti‑malware engines.
Independent threat‑intelligence feeds have placed the domain on one security blocklist and it is also listed as blocked by the PhishDestroy service, confirming that at least two reputable mitigation platforms consider it malicious. No public page title, brand targeting, or SSL/TLS details have been disclosed, leaving the exact content of the hosted page unknown. Consequently, defenders should assume the site hosts credential‑harvesting or similar phishing mechanisms.
Recommended actions include adding the domain to DNS and web‑proxy blocklists, monitoring outbound connections to the associated IP, and employing endpoint detection rules that trigger on the observed vendor signatures. Continuous re‑evaluation is advised, as additional intelligence such as page content or SSL certificates may emerge and refine the threat posture.
Data Coverage
Network Security Intelligence
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 11, 2026
10 monitored external feeds No match
Detection timeline
-
Domain status
Reachable → Unreachable
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
VirusTotal Analysis
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive