elevens[.]now
“Clearer messaging — stronger relationships | Elevens”
Deteksi tersimpan
Peringatan penyamaran
- Jenis penyamaran
status_split- Skor penyamaran
- 1/6
Ringkasan bukti
Analysis of the domain elevens.now shows it was registered on February 21, 2026 through NameCheap, Inc. The domain resolves to the Cloudflare edge address 104.21.16.50 and is served by the nameservers emerie.ns.cloudflare.com and denver.ns.cloudflare.com. Traffic is delivered over HTTP/3 and the TLS certificate is issued by Google Trust Services under the WE1 hierarchy. The web server returns HTTP 403 for the default request, while the page title observed is “Clearer messaging — stronger relationships | Elevens”, indicating a legitimate‑looking landing page that may be used to lure victims. The domain is listed on three public blocklists and is actively blocked by PhishDestroy, MetaMask, and SEAL. VirusTotal records three detections out of ninety‑five scanners, and Gridinsoft assigns a trust score of zero, reinforcing the malicious classification. The campaign targets the brand “across”, employing brand‑impersonation tactics to convince users that the site is affiliated with the legitimate across service. The combination of a recent registration, Cloudflare‑based infrastructure, a legitimate‑sounding title, and the presence on multiple blocklists aligns with high‑risk impersonation activity. The HTTP 403 response suggests the site may be configured to serve content only after specific conditions are met, a pattern commonly observed in credential‑harvesting pages. Defenders should add elevens.now to DNS and URL filtering policies, enforce TLS inspection to capture any payload delivered after the initial 403 response, and monitor for similar Cloudflare‑hosted domains that use the same nameserver pair. Email security gateways should be tuned to flag any messages referencing the observed page title or the across brand. Continuous threat‑intel feeds should be consulted for new indicators related to this infrastructure.
Data Coverage
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 11/08/2026
Linimasa deteksi
-
Status domain
Dapat dijangkau → Tidak dapat dijangkau
-
Cloudflare Radar
Pemindaian Cloudflare Radar tersimpan · Buka pemindaian
-
Cloudflare Radar
Pemindaian Cloudflare Radar tersimpan · Buka pemindaian
Tangkapan tersimpan
Intelijen Domain
Detail teknisDNS, nama TLS, dan stempel waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi
2 teknologi dengan keyakinan tinggi teridentifikasi
Analisis VirusTotal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive