udfreegift[.]live
“Nur einen Moment…”
Observación almacenada
Contraste de títulos observado
Resumen de las pruebas
udfreegift.live is flagged as a high‑risk generic phishing site. The domain was registered on 21 February 2026 through NiceNIC International Group Co., Limited and resolves to 104.21.76.26, an address owned by Cloudflare (AS13335) in the United States. DNS is served by Cloudflare’s authoritative nameservers jerome.ns.cloudflare.com and perla.ns.cloudflare.com, and the site enforces HSTS and supports HTTP/3. The TLS certificate is issued by Google Trust Services under the WE1 identifier, indicating a valid HTTPS endpoint. A request to the root URL returns HTTP 403 and the page title “Nur einen Moment…”, suggesting the site is currently serving a blocking or challenge page rather than the phishing payload. VirusTotal scans have identified the domain as malicious in 15 of 93 vendor engines, and it is listed on at least one public blocklist, with PhishDestroy already applying a block. The Gridinsoft trust score of 0/100 reinforces the malicious assessment. No public evidence describes the specific content or targeted brand, and the exact phishing vector (e.g., credential‑stealing form) has not been observed. Defenders should add 104.21.76.26 and the fqdn udfreegift.live to network‑level deny lists, configure proxy or DNS filtering to block resolution, and monitor for any outbound connections to the IP. Continuous re‑scanning with multi‑engine services is advised to detect any changes in payload or hosting. Because the infrastructure relies on a shared CDN, any takedown attempts may be limited; therefore, focus on detection and containment rather than removal. Organizations should also educate users about unsolicited messages that reference “Nur einen Moment…” or similar language, as these may be used to lure victims to the site.
Data Coverage
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 12/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Estado del dominio
Accesible → Inaccesible
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, nombres TLS y marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.