Перейти к отчёту о безопасности
Checked 09.08.2026 Ref 774D503D

MALICIOUS — CRITICAL

Проверка домена ceriz.com на фишинг и безопасность

ceriz[.]com

ceriz.com was registered on May 17, 2026 through Tucows Domains Inc.

76/100 evidence score · Critical
VirusTotal
3/91
Blocklists
No stored match
Доступность
Последний известный активный · HTTP 200
Report / Add Evidence Appeal this listing
No capture stored

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Этот домен был отмечен как вредоносный
Механизмы безопасности сообщают об обнаружении: 3. Будьте предельно осторожны — не вводите учетные данные или личную информацию.
Jump to section
Краткий обзор отчёта

ceriz.com — Последний известный активный (HTTP 200). Сводка доказательств: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 76/100. Регистратор: Tucows.

Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.

Evidence Analysis

Ref 774D503D

ceriz.com was registered on May 17, 2026 through Tucows Domains Inc. The authoritative name servers are jonah.ns.cloudflare.com and melany.ns.cloudflare.com, and the domain resolves to the Cloudflare edge address 188.114.96.3, which is geolocated to Canada. The site presents a valid TLS certificate issued by Google Trust Services under the WE1 root, indicating that encryption is correctly deployed. The web page returns HTTP 200 and displays the title “Home - CERIZ”, suggesting a generic landing page that may be used to lure victims. Current threat intelligence flags the domain as a high‑risk generic phishing campaign. It is listed on one public blocklist, has been blocked by PhishDestroy, and appears in a single AlienVault OTX pulse. VirusTotal analysis shows that 2 of 95 security vendors have marked the domain as malicious, while Gridinsoft assigns a trust score of 0 out of 100. At present, no additional artifacts such as phishing kits, credential‑harvesting forms, or targeted brand references have been publicly disclosed. The limited detection footprint – only two vendor detections and a single blocklist entry – may reflect the recent creation date rather than a lack of malicious intent. Consequently, the full scope of the campaign, including victim demographics and potential command‑and‑control infrastructure, remains uncertain. Defenders should proactively deny network connections to ceriz.com and its resolved IP address, either through firewall rules or DNS sinkholing. Continuous monitoring of Cloudflare‑associated IP ranges for similar activity is advised, as the infrastructure can be rapidly re‑hosted. Organizations should also incorporate the domain into email security filters and threat‑intel feeds to reduce exposure to credential‑stealing attempts.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
3 det.
OTX references
Сертификат TLS
Просрочен или не проверен -9d
Возраст
3 mo New
Зафиксированный статус
Последний известный активный 200
PhishDestroy
DestroyList
В списке
Охват данных12 recorded checks
VirusTotal 3 / 91 URLQuery не проверено PhishStats не проверено OTX 1 community reference CF Radar no data URLScan capture not submitted URLScan verdict вердикт недоступен DNS-блокировки не проверено TLS Просрочен или не проверен WHOIS 3 mo old Снимок экрана не зафиксировано Цепочка перенаправлений не исследовано

Процесс реагирования на угрозы

Открытие
Checks
Reports
Доступность
7/9
Угроза устранена
ceriz.com обнаружены и помещены в очередь для полного анализа
15.06.2026
VirusTotal
3/91 recorded on VirusTotal
27.07.2026
Google Safe Browsing
03.06.2026
OTX Community References
1 community publication reference on AlienVault OTX. References are not vendor verdicts and are excluded from the evidence score.
17.05.2026
robots.txt: 7 paths
Found 7 disallowed/allowed paths in robots.txt — reveals site structure
09.08.2026
Technical Analysis Recorded
Отчет содержит сохраненные технологии или результаты судебно-медицинской экспертизы.
09.08.2026
Complaint Draft Available
Подача не фиксируется. Вы можете создать проект, просмотреть его и самостоятельно отправить в соответствующий орган.
Опубликовано «DestroyList»
15.06.2026
Monitoring Continues
Домен остается доступным или доступ к нему ограничен; будущие проверки могут обновить это наблюдение.

Статус в публичных блок-листах

Аналитика доменов

Домен
Сервер / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Репутация Edge-IP не связана с этим доменом.
IP-адрес 188.114.96.3 CDN
ГеолокацияCA Toronto, CA
СетьAS13335 · CloudFlare, Inc.
Обратный поиск IPviewdns.info → rapiddns.io →
Исходный IP-адрес скрыт за прокси-сервером CDN. Результаты обратного IP-адреса для граничного адреса содержат несвязанных клиентов; для определения источника требуется пассивный DNS или данные прозрачности сертификатов.
РегистрацияСоздано 17.05.2026 (84d · New)
Статус HTTP200
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Впервые обнаружено15.06.2026
Серверы имёнmelany.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 03.05.2026scanned 17.05.2026
Favicon Hash
ICANN OVERSIGHT

Аккредитация и контекст RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Ничего не отправляется автоматически.
Пожаловаться на этот домен Предоставьте доказательства и помогите защитить других

Анализ VirusTotal

3 / Поставщики средств безопасности 91 отметили этот домен
View on VT
Last analyzed Previous stored snapshot: 2 detections
CRDF
Gridinsoft
SOCRadar
Анализ конфигурации сайта
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
/wp-content/uploads/wc-logs/ /wp-content/uploads/woocommerce_transient_files/ /wp-content/uploads/woocommerce_uploads/ /*?add-to-cart= /*?*add-to-cart= /wp-admin/ /wp-admin/admin-ajax.php
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.

Европол
Найдите официальный канал отчетности для вашей страны ЕС
National police directory
Остерегайтесь мошенников, предлагающих услуги по восстановлению данных! Преступники могут снова связаться с жертвами, притворяясь следователями, адвокатами или агентами по восстановлению. Не платите авансовые платежи и не делитесь учетными данными. Узнайте больше о мошенничестве при получении компенсаций →

Сообщите об этом в местные органы власти

Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.

Каталог 97 стран
Черновик по шаблону • помощь AI с формулировками включается только с отдельного согласия. Просмотрите и отправьте его самостоятельно
Вставить этот отчетRead-only HTML widget
HTML · IFRAME

Вставить этот отчет

Разместите эту информацию об угрозах на своём сайте или в блоге

embed.html
<iframe
  src="https://phishdestroy.io/ru/embed/domain/ceriz.com"
  title="PhishDestroy threat report for ceriz.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Очень искреннее благодарственное письмо

Генератор сатирических черновиков

Получатель
Контекст сборов

Это сатирический черновик. Суммы сборов являются оценочными; мы не утверждаем, что они точно относятся к этому домену.