tdccpmeme[.]pw
“$TDCCP”
証拠の概要
Analysis of tdccpmeme.pw shows a recent registration (February 21, 2026) through Go Daddy, LLC and immediate deployment of a site hosted behind Cloudflare (AS13335) at IP address 104.21.8.235. The domain resolves to this Cloudflare‑backed IP, utilizes Cloudflare name servers (alla.ns.cloudflare.com, emerson.ns.cloudflare.com), and presents an SSL certificate issued by Google Trust Services / WE1, indicating a valid TLS configuration. HTTP responses return status code 200 and the page title is captured as "$TDCCP", confirming that the site was reachable before being taken offline. Technical fingerprinting reveals the presence of Vercel, HSTS, Google Analytics, and HTTP/3, all typical of modern web services but also common in malicious infrastructure leveraging reputable platforms to evade detection.
The domain is listed on a single security blocklist and has been specifically flagged by PhishDestroy, reinforcing its classification as a generic phishing vector. VirusTotal scans report that one of ninety‑five security vendors identified the domain as malicious, providing a modest but notable detection signal. Independent reputation scoring from Gridinsoft assigns a trust score of 39 out of 100, reflecting low confidence in the domain's legitimacy.
Although the site is currently offline, the elevated risk rating remains justified given the combination of recent creation, rapid deployment, legitimate‑looking TLS, and confirmed detection across multiple threat intelligence sources. Defenders should continue to block tdccpmeme.pw at perimeter controls, monitor DNS queries for the associated Cloudflare IP, and update any web filtering or email security policies to include this indicator. Ongoing vigilance is advised in case the domain is reactivated or similar patterns emerge in other newly registered .pw zones.
Data Coverage
脅威対応 Pipeline
ブロックリストの確認範囲
監視対象の外部情報源 10 件 · 保存スナップショット 2026年8月13日
検出タイムライン
-
Cloudflare Radar
Cloudflare Radar スキャンを保存 · スキャンを開く
コミュニティ報告
コミュニティの 1 人が報告・初回確認 2025年7月10日
- 保存済み報告
- 1
- 報告された固有 URL
- 1
コミュニティ情報
コミュニティ報告:2 件
カテゴリRUG_PULL
We, the undersigned investors, are writing to formally lodge a complaint against Action Action Action LLC , a company registered in New York, located at 87-10 51 Ave, Rm 2P, Elmhurst, NY, 11373, and its operational team, led by Mr. Qi Fuwei (online alias: William Wang), for alleg
使用技術
高確信度で特定された技術:5 件
VirusTotalによる分析
サイト設定分析
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください