intuition-systems[.]org
“Even geduld...”
intuition-systems.org — Não verificado. Resumo das evidências: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 71/100. Registrador: PDR.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain intuition-systems.org is documented as active generic phishing infrastructure carrying a high risk designation on the report date of July 12 2026. Registration occurred on February 21 2026 via PDR Ltd. d/b/a PublicDomainRegistry.com. The domain resolves to IP 104.21.94.74 hosted in the United States under autonomous system AS13335 with nameservers nolan.ns.cloudflare.com and shubhi.ns.cloudflare.com. An SSL certificate from Google Trust Services WE1 is present and the observed technologies comprise Cloudflare along with HTTP/3. One security blocklist currently lists the domain and the HTTP response code is 403 while the page title reads Just a moment.... Current operational status remains active.
Infrastructure analysis reveals that the Cloudflare configuration and protective response code limit direct content inspection yet the domain age of approximately five months aligns with patterns seen in other flagged registrations. The combination of nameserver choices and IP location does not by itself establish malicious intent but contributes to the overall risk profile when evaluated alongside the single blocklist appearance. VirusTotal data shows two of 95 security vendors flag the domain and a separate trust evaluation assigns a score of zero out of 100.
Defenders reviewing this record should implement network-level blocks for both the domain and the associated IP address 104.21.94.74. Monitoring for additional domains sharing the same nameservers or registrar is recommended as a follow-up measure. Continued observation of HTTP status codes and page titles from similar infrastructure can help confirm whether protection mechanisms remain in place or if content changes occur. The evidence set is sufficient to justify containment actions while further passive telemetry may clarify the precise campaign scope.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análise do VirusTotal
Análise da configuração do site
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo