The domain officialdoors.club is currently active and has been classified as a generic phishing site with a high risk rating. VirusTotal reports that two of ninety‑one scanning engines have flagged the domain, indicating some detection of malicious behavior but not a universal consensus among scanners. The domain appears on a single external security blocklist and is explicitly blocked by the PhishDestroy service, confirming that at least one reputable anti‑phishing platform considers it abusive.
Infrastructure analysis shows the domain is delegated to Cloudflare name servers (kiki.ns.cloudflare.com and tom.ns.cloudflare.com) and resolves to the IP address 188.114.97.3, which is a Cloudflare edge node commonly used for rapid content delivery and often exploited by malicious actors to hide their true hosting location. No additional evidence such as page title, SSL certificate details, HTTP response codes, or Safe Browsing status is available in the supplied intelligence, leaving the exact content and payload of the site unverified. Consequently, defenders cannot confirm the specific phishing tactics employed, but the presence of flagging by multiple vendors and inclusion on a known blocklist strongly suggest credential‑harvesting activity.
Recommended mitigation steps include adding officialdoors.club to network and DNS blocklists, monitoring for DNS queries to the associated Cloudflare IP range, and employing outbound content filtering to intercept potential credential submissions. Continuous re‑evaluation is advised, as further scanning or community reporting may reveal additional indicators of compromise.