cxkjlser.shop
cxkjlser.shop — अंतिम ज्ञात सक्रिय (HTTP 200). ब्रांड प्रतिरूपण: Fortnite; घोटाले का प्रकार: Impersonation. साक्ष्य सारांश: VirusTotal 14/89 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); CF Radar malicious; PhishDestroy score 100/100. रजिस्ट्रार: GoDaddy.com.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
साक्ष्य सारांश
PhishDestroy first observed cxkjlser.shop on Sep 11, 2026. Stored content metadata identifies Fortnite as the apparent target. Page analysis recorded additional brand references to Godaddy, Roblox, and Yahoo. Stored page analysis classifies the content as impersonation. Campaign clustering links the hostname to the Unknown kit. Current evidence score: 100/100 (critical).
Positive findings are stored from 2 sources: VirusTotal and Cloudflare Radar. VirusTotal recorded 14 detections among 89 engines: alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, Lionic, Seclookup, SOCRadar, Sophos, VIPRE, Webroot on Sep 20, 2026 at 16:32 UTC. Cloudflare Radar classified the hostname as malicious and assigned the categories dga domains and malware; its verdict timestamp was not retained. Non-positive and contextual checks: On Sep 20, 2026 at 16:33 UTC, AlienVault OTX listed 4 community pulse references (not vendor detections); Google Safe Browsing returned no flag. The separate external-blocklist snapshot contained no matches on Sep 20, 2026 at 18:20 UTC. URLScan completed without a malicious verdict (score 0) on Sep 19, 2026 at 03:30 UTC.
HTTP 200 was recorded on Sep 20, 2026 at 10:00 UTC. Registration records for the domain list GoDaddy.com LLC as the registrar and Mar 23, 2026 as the creation date. At collection time, the hostname resolved to 15.197.148.33 on AS16509 (Amazon.com, Inc.). The recorded endpoint location is Montreal, CA. The stored server header is openresty. DOM analysis on Sep 19, 2026 at 02:20 UTC returned 98/100. The evidence archive retains 1 visual capture from PhishDestroy; no page title was retained, so the captures preserve the landing-page appearance. TLS metadata lists GoDaddy.com / GoDaddy TLS Intermediate CA DV - R1v1 as the certificate issuer with validity through Oct 7, 2026; checked Sep 18, 2026 at 19:02 UTC.
The content indicators and 2 positive source findings support the current Fortnite-themed impersonation classification.
नेटवर्क सुरक्षा इंटेलिजेंस
Forensic History & Detection Timeline
-
Threat First Observed Sep 18, 2026 · 18:43 UTCDomain ingestion complete. Initial state is marked as alive pointing to IP
15.197.148.33.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
Scanner note: alive_content: raw=ok; http=200; via=https_proxy
सहेजा गया कैप्चर · 1 source
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें · 9 identified
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of cxkjlser.shop · checked Sep 18, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।