Analysis of cbdcintl.com, created on July 10, 2026, shows a domain that is actively used for a generic phishing campaign. The domain is registered through Cloudflare, Inc. and is serviced by the Cloudflare name servers magdalena.ns.cloudflare.com and vicky.ns.cloudflare.com. DNS resolution points to the single IPv4 address 177.3.41.46, indicating a low‑complexity hosting setup. Threat intelligence indicates that the domain appears on one security blocklist and has been explicitly blocked by the PhishDestroy feed, confirming its malicious status.
VirusTotal records show that the domain was scanned by 91 antivirus and URL‑reputation vendors, none of which raised a detection at the time of scanning; however, the absence of detections does not constitute evidence of safety, and the domain remains listed as active. The current risk level is marked as "under investigation," reflecting ongoing monitoring by analysts. The limited data set does not provide information on SSL certificates, HTTP response codes, or page content such as title or brand targeting, so the precise phishing vector cannot be fully described.
Defenders should treat cbdcintl.com as a confirmed phishing site, add the domain and its resolving IP address to deny‑list controls, and continue to monitor for any changes in detection status or additional indicators of compromise. Organizations using web filtering, DNS sinkholing, or endpoint protection should ensure that the domain is blocked across all layers, and incident response teams should be prepared to investigate any user interactions with the URL. Continuous re‑evaluation is advised, as further analysis may reveal additional infrastructure or payload details.