Analysis indicates that spiderfort.com was registered on 22 April 2026 through the registrar MAT BAO CORPORATION. The domain is delegated to the DNSPod name servers a.dnspod.com, b.dnspod.com and c.dnspod.com, and resolves to the IPv4 address 193.187.110.3. Current threat intelligence places the domain on a single external blocklist and it is actively blocked by the PhishDestroy feed, confirming that security‑focused providers have identified it as malicious. A VirusTotal scan submitted the domain to 91 anti‑malware engines; none of the engines raised a detection at the time of scanning.
This absence of detections should not be interpreted as an indication of benign behavior, especially given the domain’s recent creation date and the presence of a blocklist entry. No public SSL/TLS certificate information, HTTP response codes, page title, or Safe Browsing verdicts are available in the supplied data, leaving the surface‑web characteristics of the site unverified. Consequently, the exact content and the specific phishing lure remain unknown, and attribution to a particular brand or campaign cannot be confirmed.
Defenders should treat spiderfort.com as a high‑confidence malicious indicator. Recommended actions include adding the domain to DNS‑level deny lists, enforcing URL filtering rules that block outbound connections to the IP address 193.187.110.3, and monitoring for any new subdomains or DNS changes. Continuous re‑scanning with multi‑engine services and correlation with internal endpoint telemetry are advised to detect any latent payloads or credential‑harvesting activity that may be delivered through this infrastructure.