Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@dynadot.com.
The latest stored availability evidence still shows the domain reachable; 24 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
shop-dofus[.]fr
“Potion Valdermax - Actualites - Unity - le Unity stratégique.”
shop-dofus.fr — Não verificado. Representação da marca: Dofus; Tipo de golpe: Impersonation. Resumo das evidências: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; PhishDestroy score 98/100. Registrador: Dynadot.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
shop-dofus.fr is currently listed as an active generic phishing site with an elevated risk rating. The domain has been blocked by the PhishDestroy sinkhole, indicating that traffic to the domain is being redirected or denied by that mitigation service. In the AlienVault Open Threat Exchange the domain appears in fifty distinct threat‑intelligence pulses, reflecting repeated observations across multiple contributors. It is also present on a single external security blocklist, further confirming that at least one independent feed has classified it as malicious.
VirusTotal analysis shows that seventeen out of ninety‑one scanned security vendors returned a malicious verdict for the domain, providing concrete vendor consensus that the site hosts phishing content. The exact payload or lure employed by the site has not been publicly disclosed; page title and content analysis have not been released, so the specific brand or service being spoofed remains unknown. No additional infrastructure details such as registrar, hosting IP, ASN, or SSL certificate information are available in the current intelligence set. Consequently, defenders should treat any communication that references shop‑dofus.fr as potentially malicious, enforce URL filtering based on the domain, and incorporate it into existing phishing detection rules.
Continuous monitoring of threat‑intel feeds for updates on hosting details or observed payloads is advised, as further evidence may emerge that clarifies the phishing technique or target brand. Organizations employing email gateways or web proxies should block outbound connections to the domain and consider quarantine of any messages containing links to it. Incident response teams should also reference the existing PhishDestroy block and the AlienVault OTX pulses when correlating internal alerts, ensuring that detection mechanisms are aligned with the observed 17‑vendor malicious rating.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Cruzamento de inteligência de ameaças · source references
Análise do VirusTotal
Evidências e relatórios externos
PD-1784898044-shop-dofus.fr Recipient: abuse@dynadot.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo