Analysis of the domain malatepia.com, reported on July 30, 2026, reveals a generic phishing threat currently under investigation. The domain was created on July 21, 2026, just nine days before the report date, and remains active. It was registered through Fewmoretaps OU d/b/a Trustname.com, a registrar not commonly associated with high-reputation domains.
The domain resolves to IP address 104.21.0.105, which is part of Cloudflare's infrastructure (nameservers hans.ns.cloudflare.com and heidi.ns.cloudflare.com). VirusTotal scanned the domain using 91 vendors and found zero detections; however, an absence of detections does not confirm safety, as the domain may be newly active or deliberately evading detection. Only one security blocklist, PhishDestroy, has flagged this domain.
Google Safe Browsing, AlienVault OTX, and SSL certificate status are not explicitly reported in the available intelligence, so their status remains unknown. The domain's recent creation, limited blocklist coverage, and registration through a lesser-known registrar are indicators of potential phishing activity. Defenders should treat malatepia.com with caution, block access at the network level, monitor for any changes in its resolution or content, and consider submitting samples to additional threat intelligence platforms for further analysis.