evmnet[.]cc
The domain evmnet.cc was registered on May 16, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and is presently resolved to the Cloudflare‑hosted address 104.21.94.244, located in Canada. The site presents a valid HTTPS certificate issued by Let’s Encrypt (E7) and returns HTTP 200 responses, indicating an operational web server. Its authoritative name servers are johnny.ns.cloudflare.com and rayne.ns.cloudflare.com, confirming the use of Cloudflare’s DNS infrastructure.
Infrastructure analysis shows a low Gridinsoft trust score of 23 out of 100, and the domain appears on three independent security blocklists. It has been explicitly blocked by multiple anti‑phishing filters, including PhishDestroy, MetaMask, and SEAL, suggesting that known malicious payloads or credential‑harvesting pages have been observed. The domain also surfaces in a single AlienVault OTX pulse, providing additional community‑level corroboration of its malicious use.
VirusTotal scans have flagged evmnet.cc in eight out of ninety‑five antivirus engines, reinforcing the suspicion of malicious activity despite a modest detection rate. The combination of a recent registration date, active HTTPS service, and presence on reputable blocklists aligns with behaviors typical of credential‑stealing operations targeting cryptocurrency or financial services. However, the exact phishing template, targeted brands, or victim demographics remain unclear from the publicly available data.
Defenders should prioritize adding evmnet.cc to network deny lists and enforce DNS‑level blocking to prevent client access. Continuous monitoring of the associated IP address and any newly observed sub‑domains is advisable, as the underlying Cloudflare infrastructure can be repurposed for fast‑flux hosting. Incident response teams should also correlate internal logs for any outbound connections to 104.21.94.244 and investigate potential credential capture attempts originating from this endpoint.
セキュリティシグナル
ネットワークセキュリティインテリジェンス Registrar context
脅威対応 Pipeline
ブロックリストの確認範囲
10 件の情報源 · 2026年8月9日 に同期
保存済みの結果証拠
結果とテイクダウンの帰属
- 結果
redirected- 原因
http_redirect- 確信度
- 80%
検出タイムライン
保存された観測結果を時系列で表示します。
-
可用性
可用性:初回観測は unknown
993d00c35140 -
可用性
可用性:unknown → redirected
718da7f3dbec -
可用性
可用性:redirected → unknown
b8fab9cf4018 -
可用性
可用性:unknown → redirected
182246c9bea0 -
可用性
可用性:redirected → unknown
7cebcfd4071c -
可用性
可用性:unknown → redirected
1f6835537d1f -
可用性
可用性:redirected → unknown
ca255b61650a -
可用性
可用性:unknown → redirected
779ee49174a2 -
可用性
可用性:redirected → unknown
d8f7d37d7f95 -
可用性
可用性:unknown → redirected
8d588aae1884
ドメイン・インテリジェンス
技術詳細DNS、SSL SAN、タイムスタンプ
VirusTotalによる分析
サイト設定分析
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください