Analysis as of July 31, 2026 indicates that the domain qwqaqwqasqsaq.edgeone.dev is actively being used for malicious operations. The domain was registered through Tencent Cloud, a provider known to host both legitimate and illicit services. DNS resolution currently points to the IPv4 address 43.174.247.29, and no authoritative nameserver records were returned, suggesting that the domain may be using private or dynamically updated name servers.
The domain appears on a single security blocklist and is explicitly blocked by the PhishDestroy filtering service, confirming that at least one defensive platform has identified it as malicious. VirusTotal scans show that 16 of 91 security vendors flagged the domain, demonstrating a moderate consensus among detection engines that the host is associated with unwanted activity. The risk level has been assigned as high, and the status remains active, indicating that the infrastructure is still operational.
No additional data such as SSL certificate details, HTTP response codes, page title, or observed brand targeting is available, leaving the exact phishing payload or lure unknown. Defenders should incorporate the domain and its associated IP address into network‑level deny lists, monitor outbound connections to the host, and consider extending existing URL filtering rules to cover the edgeone.dev sub‑domain space. Continuous re‑evaluation is advised, as further intelligence—such as content retrieval or sinkhole observations—could clarify the specific campaign tactics and victim profile.