gov-dwpqte[.]top
Analysis of the domain gov-dwpqte.top indicates active malicious activity consistent with a generic phishing operation. The domain was registered on June 12, 2026 through 阿里云计算有限公司, a known Alibaba Cloud registrar, suggesting the infrastructure is provisioned on a mainstream cloud provider. VirusTotal reports that 15 of 91 security vendors have flagged the domain, providing a multi‑vendor consensus that the site is malicious.
Independent threat‑intelligence feeds have placed the domain on a single security blocklist, and PhishDestroy explicitly blocks it, reinforcing the assessment of elevated risk. The current risk level is marked as elevated and the status is active, meaning the domain is presently reachable and may be used to harvest credentials or deliver further payloads. Publicly available data does not yet reveal the hosting IP address, SSL certificate details, or the exact page title displayed by the site, limiting deeper technical attribution at this stage.
Defenders should immediately add gov-dwpqte.top to DNS and URL filtering policies, monitor for any outbound connections to the domain, and consider sharing the indicator with upstream blocklist operators. Continued observation is advised to capture any evolution of the hosting infrastructure or emergence of additional malicious artifacts linked to this domain.
Network Security Intelligence
Threat Response Pipeline
Public Blocklist Status
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive