zfjqcl[.]top
Riepilogo delle prove
Analysis indicates that the domain zfjqcl.top was registered on February 21 2026 and subsequently observed by multiple threat intelligence sources. The domain resolves to the IPv4 address 208.91.196.46, which belongs to the AS40034 network operated by Confluence Networks Inc. and is geolocated in the United States. The hosting IP appears on three independent blocklists—PhishDestroy, ScamSniffer, and Enkrypt—confirming that it is associated with malicious activity. The site employed an SSL certificate identified as R10, but no additional certificate details are publicly disclosed.
VirusTotal scans show that two out of ninety‑three security vendors flagged the domain as malicious, reinforcing the blocklist observations. The domain’s current operational status is reported as offline, suggesting that the phishing infrastructure has been taken down or is no longer serving content. No publicly available page title, brand target, or detailed payload information has been released, leaving the exact phishing vector unverified.
Defenders should continue to block the domain and its associated IP address at network perimeter devices, ensure that the three blocklists are incorporated into existing URL filtering solutions, and monitor for any re‑appearance of the IP or similar registrant patterns. Ongoing reconnaissance of the registrar and DNS records is advised to detect potential repurposing of the domain or related infrastructure. The limited detection footprint—three blocklists and two vendor flags—indicates a low‑volume campaign, but the elevated risk rating warrants proactive mitigation.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
8 fonti esterne monitorate Nessuna corrispondenza
Informazioni forensi
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo