fl[.]krdmv[.]cc
“krdmv.cc | 520: Web server is returning an unknown error”
Résumé des preuves
Analysis of fl.krdmv.cc indicates that the domain is actively being used for phishing operations. The domain was registered on June 12, 2026 through Dominet (HK) Limited, a registrar known to host a variety of short-lived malicious zones. DNS resolution points to the IPv4 address 172.67.161.99, which is shared across multiple cloud‑based hosting services often abused for illicit content.
VirusTotal reports that 12 of 91 security vendors have flagged the domain, suggesting that a subset of scanning engines have observed malicious payloads or suspicious network behavior associated with the host. The domain appears on a single external blocklist and is explicitly listed by the PhishDestroy service, confirming that at least one dedicated anti‑phishing consortium has taken remediation action. No additional public reputation signals, such as Safe Browsing or OTX entries, are currently available for this host, and the page title or target brand have not been disclosed in the available intelligence.
Given the recent creation date, the limited detection history, and the presence on a phishing‑specific blocklist, defenders should treat fl.krdmv.cc as a high‑confidence phishing indicator. Recommended actions include adding the domain to network‑level deny lists, updating email gateway filters to block any URLs containing the domain, and monitoring outbound connections from internal assets to the resolved IP address for signs of data exfiltration. Continuous re‑evaluation is advised, as further analysis of the hosted content could reveal additional compromised credentials or targeted brands.
Data Coverage
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif