Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
qfxvault[.]com
“One moment, please...”
संग्रहीत अवलोकन
देखा गया शीर्षक अंतर
This domain is flagged for elevated-risk credential theft targeting financial service users. Analysis indicates qfxvault.com operated as a fraudulent portal designed to harvest login credentials, likely impersonating legitimate banking or payment platforms. The threat type is specifically credential theft, not generic phishing, with a focus on capturing sensitive financial account details for unauthorized access or fraudulent transactions. Infrastructure analysis reveals the domain was registered on September 25, 2025, through TUCOWS.COM, CO. and resolved to IP address 104.21.84.124. It appears on one security blocklist and is currently blocked by PhishDestroy. The domain received a trust score of 0/100 from Gridinsoft, while VirusTotal reports 4 out of 95 security vendors flagging it as malicious. Detected technologies include Cloudflare Browser Insights, Cloudflare, and HTTP/3, with an SSL certificate issued by Google Trust Services. The page title 'One moment, please...' suggests the use of Cloudflare interstitial pages, a common tactic to evade detection or delay analysis. Mitigation steps for credential theft threats include immediate password resets for any accounts accessed via this domain, particularly financial services. Organizations should deploy DNS-based blocking for the domain and its resolved IP (104.21.84.124) across all network layers. End-users are advised to enable multi-factor authentication (MFA) on all financial accounts and verify domain authenticity before entering credentials. Security teams should monitor for indicators of compromise (IoCs) such as the domain, IP, and SSL certificate fingerprint in logs, and conduct retrospective analysis for any prior interactions with the infrastructure.
भेजी गई रिपोर्ट का रिकॉर्ड
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-20260324-6DE717- कैप्चर किए गए पेज का शीर्षक
- QFX Vault - Protect your Digital Assets
- PDF दस्तावेज़
- PDF प्रमाण
प्रमाण का पूरा पाठ
Policy Violations: Participates in DNS Abuse Framework; explicitly recognizes phishing, malware, botnets, pharming, spam-as-vector as abuse requiring registrar action
Applicable Laws: Criminal Code §342.1 (unauthorized access), §380 (fraud)
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 स्रोत · 09/08/2026 को सिंक किया गया
पहचान समयरेखा
संग्रहीत अवलोकन कालानुक्रमिक क्रम में।
-
VirusTotal
VirusTotal: 1 → 4
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of qfxvault.com · checked Jun 26, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।