cfd[.]best
“Un instant…”
साक्ष्य सारांश
The domain cfd.best is a generic phishing site designed to deceive users into disclosing sensitive information through fraudulent means. It does not impersonate a specific brand or employ a known crypto drainer kit. As of the latest verification, cfd.best has been taken offline, reducing immediate risk to potential victims.
Technical analysis reveals that cfd.best was flagged by 2 of 95 security vendors on VirusTotal, including Gridinsoft and SOCRadar, and appears on 1 security blocklist (PhishDestroy). The domain was registered through Global Domain Group LLC on February 20, 2026, and resolved to the IP address 172.67.141.101, hosted on Cloudflare's infrastructure (AS13335). The SSL certificate was issued by Let's Encrypt, and the observed page title was 'Un instant…'. The domain's Gridinsoft trust score is 0 out of 100, further indicating its malicious nature. Nameservers for cfd.best are amos.ns.cloudflare.com and aryanna.ns.cloudflare.com.
Users who may have interacted with cfd.best should immediately change any credentials entered on the site, enable two-factor authentication (2FA) on all accounts, and monitor for unauthorized activity. If financial or crypto-related information was exposed, consider revoking token approvals and transferring funds to a new wallet. Report the phishing domain to platforms like Google Safe Browsing, PhishTank, or local cybersecurity authorities to aid in broader mitigation efforts.
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-20260315-E8240C- कैप्चर किए गए पेज का शीर्षक
- Just a moment...
- PDF दस्तावेज़
- PDF प्रमाण
प्रमाण का पूरा पाठ
Acceptable Use Policy (AUP): The domain cfd.best is actively engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The ongoing use of this domain for deceptive practices allows for immediate grounds for suspension or termination of services as per your TOS.
Applicable Laws (US):
Computer Fraud and Abuse Act (CFAA), 18 U.S.C. § 1030: This federal law prohibits unauthorized access to computers and networks, which is applicable to phishing schemes that deceive users into providing sensitive information.
CAN-SPAM Act, 15 U.S.C. § 7701: This law regulates commercial email and prohibits deceptive practices in email marketing, including phishing, which misleads recipients.
Wire Fraud, 18 U.S.C. § 1343: Phishing schemes often involve fraudulent schemes to obtain money or property via electronic communications, constituting wire fraud.
Regulatory Note: Non-compliance with your AUP and TOS, as well as applicable laws, may expose your organization to legal liability and regulatory scrutiny. Immediate action is recommended to mitigate these risks.
रिपोर्ट इतिहास 5
- रिपोर्ट 2 ⚠️ ESCALATION #2 (692h active): Phishing - cfd[.]best
- रिपोर्ट 3 ⚠️ ESCALATION #3 (724h active): Phishing - cfd[.]best
- रिपोर्ट 4 ⚠️ ESCALATION #4 (963h active): Phishing - cfd[.]best
- रिपोर्ट 5 ⚠️ ESCALATION #5 (1011h active): Phishing - cfd[.]best
- रिपोर्ट 6 ⚠️ ESCALATION #6 (1060h active): Phishing - cfd[.]best
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of cfd.best · checked Mar 15, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।