Analysis of eventchecker-kz.netlify.app shows that the domain is hosted on Netlify and resolves to the IPv4 address 63.176.8.218. The registrar information confirms Netlify as the registration service, and no authoritative nameserver records were returned, indicating that the domain’s DNS configuration is either hidden or not publicly resolvable. The site is currently listed on a single public blocklist and has been added to the PhishDestroy blocklist, demonstrating that at least one anti‑phishing feed has identified it as malicious.
VirusTotal has processed the domain with 91 scanning engines; none of the engines raised a detection, but the absence of a flag does not constitute a safety guarantee. No Safe Browsing, OTX, SSL certificate, HTTP status code, or page‑title data are available in the intelligence set, so the content and transport security of the site remain unverified. The lack of visible nameserver records and the reliance on a generic Netlify hosting environment are typical of rapidly deployed phishing infrastructure.
Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any emergence of additional detections on reputation services, and consider adding the address 63.176.8.218 to host‑based deny lists. Ongoing observation is required because the domain’s activity status is marked as active and the threat level remains under investigation.