korea-dpz0x2xlek8g[.]edgeone[.]dev
“Tencent Edgeone”
The domain korea-dpz0x2xlek8g.edgeone.dev is currently active and has been classified as a generic phishing infrastructure. DNS resolution returns a single A record pointing to 43.174.247.29; no authoritative nameserver information could be retrieved. A VirusTotal assessment shows the domain was examined by 91 scanning engines, none of which reported a detection at the time of analysis, though the absence of detections does not constitute a safety assurance. The threat record indicates the campaign is under investigation, with risk level marked as under_investigation. Observable data are limited to the IP address and the lack of nameserver details, leaving the broader hosting context and potential attribution unresolved. Defenders should consider adding the IP address 43.174.247.29 to block lists, monitor DNS queries for the domain, and enforce URL filtering policies that flag any traffic to this hostname. Continuous re‑evaluation is advised, as additional intelligence such as payload samples, phishing page content, or victim reports could refine the threat assessment. The domain’s active status warrants ongoing surveillance pending further evidence.
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Registration: edgeone.dev
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For the registrable domain edgeone.dev behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive