rndex[.]ink
“404 Not Found”
Riepilogo delle prove
The domain rndex.ink was registered on 21 February 2026 and resolves to the Cloudflare address 104.21.17.188, which is owned by AS13335 Cloudflare, Inc. and located in the United States. The authoritative name servers are sandra.ns.cloudflare.com and arvind.ns.cloudflare.com, confirming that the site is using Cloudflare DNS and CDN services. An SSL certificate identified as “WE1” is present, indicating that TLS is configured, but the certificate details provide no indication of legitimate ownership. Automated analysis on VirusTotal shows that 2 of 93 security vendors have flagged rndex.ink as malicious, and the domain appears on three independent security blocklists.
Independent blocklist providers PhishDestroy, MetaMask, and SEAL have already added the domain to their deny lists. Gridinsoft assigns a trust score of 0 out of 100, reinforcing the malicious assessment. When accessed, the HTTP response returns the title “404 Not Found”, suggesting that the site is currently offline or deliberately serving an error page. The current operational status is reported as offline, and no additional content has been captured.
Because the page content, phishing kit, or targeted brand have not been disclosed, the precise phishing vector remains unknown. However, the combination of recent registration, Cloudflare hosting, low trust score, and vendor detections aligns with typical infrastructure used for credential‑harvesting campaigns. Defenders should continue to block rndex.ink at network perimeter and DNS resolvers, monitor for any re‑activation of the host, and consider adding the associated IP address 104.21.17.188 to deny lists, noting that this IP is shared by many legitimate Cloudflare customers. Ongoing threat intelligence feeds should be consulted for any future observations that might reveal the phishing payload or target audience.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 10/08/2026
8 fonti esterne monitorate Nessuna corrispondenza
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo