szvon-ex.com
“Un instant…”
Analysis of www.szvon-ex.com shows a newly registered domain (created 21 Feb 2026) that is hosted behind Cloudflare’s network (AS13335) and terminates TLS with
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Résumé des preuves
Analysis of www.szvon-ex.com shows a newly registered domain (created 21 Feb 2026) that is hosted behind Cloudflare’s network (AS13335) and terminates TLS with a Google Trust Services / WE1 certificate. The site resolves to 188.114.97.3, a Cloudflare‑owned address located in the United States, and serves content over HTTP/3 with a 200 OK response. The only visible page element is the title “Just a moment…”, which provides no functional insight. Reputation data indicates the domain appears on a single security blocklist and has been flagged by PhishDestroy as a social‑media phishing campaign. AlienVault OTX lists the domain in one pulse, and VirusTotal reports six detections out of ninety‑three scanners, reflecting a low but non‑zero malicious rating. The Gridinsoft trust score of 0 / 100 further confirms a lack of trust. Nameservers are alla.ns.cloudflare.com and huxley.ns.cloudflare.com, consistent with the Cloudflare hosting. No additional infrastructure such as command‑and‑control servers, payload URLs, or email‑sending services has been observed. Because the domain is actively serving content and is already listed by multiple threat‑intelligence sources, defenders should block any outbound or inbound traffic to the host, add the domain to URL filtering policies, and monitor for related lookup activity. Continuous re‑evaluation is advised in case further indicators, such as phishing page snapshots or credential‑harvesting endpoints, become available.
Forensic History & Detection Timeline
-
Domain Status Transition Mar 3, 2026 · 05:33 UTCDomain state transitioned from alive to dead.
-
Cloudflare Radar Scan Mar 2, 2026 · 23:15 UTCCloudflare Radar scan registered: View Radar report.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Evasion analysis
Cloaking suspected: scanner and victim titles differ
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not observed
- Score de dissimulation
- 0/6
- Last cloaking scan
- Server header seen by scanner
cloudflare
Scanner note: alive_content: raw=ok; http=200; via=https_proxy; server=cloudflare
Technologies · 2 identified
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of szvon-ex.com · checked Mar 2, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif