Aller au rapport de sécurité
Checked 09/08/2026 Ref 222B4034

MALICIOUS — CRITICAL

cumdates.com used for high‑risk generic phishing campaign

cumdates[.]com

Analysis of the domain cumdates.com indicates that it is actively being leveraged in a generic phishing operation classified as high risk.

81/100 evidence score · Critical
VirusTotal
3/91
Blocklists
No stored match
Disponibilité
Dernier actif connu · HTTP 301
Report / Add Evidence Appeal this listing
No capture stored

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Ce domaine a été signalé comme malveillant
Moteurs de sécurité signalant une détection : 3. Faites preuve d’une extrême prudence – ne saisissez pas d’informations d’identification ou d’informations personnelles.
Jump to section
Résumé du rapport

cumdates.com — Dernier actif connu (HTTP 301). Résumé des preuves: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 81/100. Bureau d’enregistrement: InterNetX.

L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.

Evidence Analysis

Ref 222B4034

Analysis of the domain cumdates.com indicates that it is actively being leveraged in a generic phishing operation classified as high risk. The domain is registered through InterNetX GmbH, and its DNS resolution is hosted on Cloudflare secondary name servers ns0107.secondary.cloudflare.com and ns0137.secondary.cloudflare.com. HTTP requests to the site return a 301 redirect, suggesting an attempt to forward victims to a malicious endpoint.

Threat intelligence sources show that the domain is listed on one security blocklist and has been blocked by the PhishDestroy service, confirming its presence on known anti‑phishing feeds. VirusTotal reports three detections out of ninety‑one scanned security vendors, providing limited but concrete evidence of malicious activity. No additional infrastructure details such as IP address, autonomous system number, or geographic location are available from the current data set, and SSL certificate information is not disclosed.

The page title and any content‑specific indicators have not been publicly released, leaving the exact phishing lure undefined. Defenders should continue to monitor cumdates.com across DNS, URL filtering, and endpoint protection solutions, enforce blocklist entries for the domain, and consider it a high‑severity indicator when observed in network traffic. Incident responders are advised to isolate any connections to the domain, collect associated logs, and apply remediation steps consistent with phishing response playbooks.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
3 det.
OTX references
Gridinsoft
10/100
Certificat TLS
Let's Encrypt
Statut observé
Dernier actif connu 301
PhishDestroy
DestroyList
Répertorié
Couverture des données13 recorded checks
VirusTotal 3 / 91 URLQuery pas vérifié PhishStats pas vérifié OTX 4 community references CF Radar scan completed URLScan capture not submitted URLScan verdict verdict indisponible Blocs DNS pas vérifié TLS valid certificate, 62d WHOIS not parsed Capture d'écran non capturé Chaîne de redirection non sondé Gridinsoft 10/100

Processus de réponse aux menaces Pipeline

Découverte
Checks
Reports
Disponibilité
7/9
Menace détectée
cumdates.com détectés et mis en file d'attente en vue d'une analyse complète
20/05/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
3/91 recorded on VirusTotal
25/07/2026
Google Safe Browsing
25/07/2026
OTX Community References
4 community publication references on AlienVault OTX. References are not vendor verdicts and are excluded from the evidence score.
25/07/2026
Technical Analysis Recorded
Le rapport contient des résultats de technologie ou d’analyse médico-légale stockés.
09/08/2026
Complaint Draft Available
Aucune soumission n'est enregistrée. Vous pouvez créer un brouillon, le réviser et le soumettre vous-même à l'autorité compétente.
DestroyList publié
20/05/2026
Monitoring Continues
Le domaine reste accessible ou restreint en accès ; des contrôles futurs pourraient mettre à jour cette observation.

Statut de la liste de blocage publique

Informations sur les domaines

Domaine
Serveur / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden La réputation Edge-IP n’est pas attribuée à ce domaine.
Bureau d’enregistrement InterNetX
Adresse IP 104.18.33.6 CDN
LocalisationCA Toronto, CA
RéseauAS13335 · Cloudflare, Inc.
L'adresse IP d'origine est cachée derrière un proxy CDN. Les résultats d’IP inversé pour l’adresse périphérique contiennent des locataires non liés ; trouver l’origine nécessite un DNS passif ou des données de transparence des certificats.
Statut HTTP301 Moved Permanently
Détails techniquesDNS, SAN SSL, horodatages
Première détection20/05/2026
Serveurs de nomsns0137.secondary.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 28/06/2026scanned 29/07/2026
ICANN OVERSIGHT

Contexte de l’accréditation et du RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Rien n’est envoyé automatiquement.
Technologies · 5 identified
Bootstrap
UI frameworks

Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.

getbootstrap.com Confiance à 100 %
OneSignal
Marketing automation A/B Testing

OneSignal is a customer engagement messaging solution.

onesignal.com Confiance à 100 %
jQuery
JavaScript libraries

jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.

jquery.com Confiance à 100 %
Google Hosted Libraries
CDN

Google Hosted Libraries is a stable, reliable, high-speed, globally available content distribution network for the most popular, open-source JavaScript libraries.

developers.google.com Confiance à 100 %
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com Confiance à 100 %
Detected via Cloudflare Radar · Wappalyzer engine
Signaler ce domaine Envoyez des éléments de preuve et contribuez à protéger les autres

Analyse VirusTotal

3 / Les fournisseurs de sécurité 91 ont signalé ce domaine
View on VT
Last analyzed
CRDF
Gridinsoft
SOCRadar
Analyse des performances du site

Google PageSpeed Insights — mobile performance audit of cumdates.com · checked Jul 25, 2026

87
Needs Work
Performance
FCP
2.46s
First Contentful Paint
LCP
3.64s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
2.46s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.

Europol
Trouvez le canal de signalement officiel pour votre pays de l'UE
National police directory
Méfiez-vous des escrocs qui prétendent vous aider à récupérer vos biens ! Les criminels peuvent recontacter leurs victimes tout en se faisant passer pour des enquêteurs, des avocats ou des agents de recouvrement. Ne payez pas de frais initiaux et ne partagez pas vos informations d'identification. En savoir plus sur la fraude liée aux aides à la reprise →

Signalez-le à vos autorités locales

Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.

Annuaire de 97 pays
Brouillon assisté par l'IA : les détails de l'incident sont traités par le fournisseur d'IA Examinez-le et soumettez-le vous-même
Intégrer ce rapportRead-only HTML widget
HTML · IFRAME

Intégrer ce rapport

Partagez ces informations sur les menaces sur votre site web ou votre blog

embed.html
<iframe
  src="https://phishdestroy.io/fr/embed/domain/cumdates.com"
  title="PhishDestroy threat report for cumdates.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Une lettre de remerciement très sincère

Générateur de brouillon satirique

Destinataire
Contexte des frais

Brouillon satirique. Les montants des frais sont des estimations ; aucune attribution exacte à ce domaine n’est affirmée.