trade50vurna[.]com
“Suspected phishing site | Cloudflare”
trade50vurna.com — Conteúdo indisponível (HTTP 502). Resumo das evidências: VirusTotal 1/93 (SOCRadar); PhishDestroy score 55/100. Registrador: Gransy, s.r.o.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis as of July 24 2026 indicates that the domain trade50vurna.com was registered on February 21 2026 through the registrar Gransy, s.r.o. The domain resolves to the Cloudflare address 172.67.133.196 and uses the Cloudflare nameservers aryanna.ns.cloudflare.com and coleman.ns.cloudflare.com. No TLS certificate is presented, suggesting the site was served without HTTPS. The HTTP response presented the page title “Suspected phishing site | Cloudflare”, which is a default Cloudflare block page rather than content hosted by the attacker. The domain received a Gridinsoft trust score of 0 out of 100 and is listed on a single security blocklist.
PhishDestroy has already taken the site offline, and it appears on one additional blocklist. VirusTotal reports that one of ninety‑three scanned security vendors flagged the domain, providing an independent indication of malicious intent. AlienVault OTX includes the domain in a single threat‑intel pulse, further corroborating its association with phishing campaigns. The infrastructure is hosted behind Cloudflare’s AS13335 network in the United States, which masks the underlying origin server and complicates attribution. While the available data confirms that the domain was used for phishing and has been disabled, the specific payload, targeted brand, or victim demographics remain unknown because no content was captured beyond the Cloudflare block page.
Defenders should continue to block trade50vurna.com at perimeter defenses, monitor for any resurgence of the domain or its associated IP address, and include the domain in threat‑intel feeds. Given the low trust score, blocklist presence, and vendor flag, the domain should be treated as high‑risk and excluded from any allow lists. Ongoing observation of the registrar Gransy, s.r.o. for similar registrations is recommended.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Inteligência forense
Análise do VirusTotal
Evidências arquivadas
Evidências e relatórios externos
PD-20260107-7C4A3A Recipient: abuse@regtons.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo