Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@ifastnet.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
cedibupod[.]fwh[.]is
cedibupod.fwh.is — Encoberto · alcançável. Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 7/91 (BitDefender, CRDF, G-Data, Seclookup, URLQuery); URLQuery 5 alerts; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. Registrador: FreeWebHostingArea.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain cedibupod.fwh.is has been identified as a generic phishing site and is considered unsafe. It does not impersonate any specific brand and is not associated with any known drainer kit. The site has already been taken offline, reducing its immediate risk, but evidence indicates it was used for phishing activity. Users searching for information about cedibupod.fwh.is in relation to phishing, scams, or safety concerns should be aware that this domain was classified as a threat.
Technical analysis shows that 6 of 95 security vendors on VirusTotal, including BitDefender, CRDF, and G-Data, have flagged cedibupod.fwh.is as malicious. The domain was registered through FreeWebHostingArea on November 01, 2024, and resolves to IP address 185.27.134.131, which is located in the United Kingdom under AS34119 Wildcard UK Limited. It appears on three security blocklists: PhishDestroy, MetaMask, and SEAL. The SSL certificate was issued by ZeroSSL GmbH / ZeroSSL ECC DV SSL CA 2, and the nameservers are ns1.byet.org, ns2.byet.org, ns3.byet.org, and ns4.byet.org. The Gridinsoft trust score for cedibupod.fwh.is is 0 out of 100.
Anyone who interacted with cedibupod.fwh.is should assume their credentials may be compromised. It is advised to immediately change any affected passwords, enable two-factor authentication where possible, and remain vigilant for suspicious account activity or fraud attempts. Victims should also report the incident to relevant authorities or their organization's IT security team for further investigation and response.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | cedibupod.fwh.is |
malicious | Sinkholed |
| Hagezi Threat Feed | cedibupod.fwh.is |
malicious | Sinkholed |
| DigiCert UltraDNS | cedibupod.fwh.is |
malicious | Sinkholed |
| DNS4EU | cedibupod.fwh.is |
malicious | Sinkholed |
| Quad9 DNS | cedibupod.fwh.is |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
PD-20260620-26B647 Recipient: abuse@ifastnet.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo