Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 23 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
cwfpl[.]in
“Not Acceptable!”
Сводка доказательств
The domain cwfpl.in is currently classified as a high‑risk generic phishing infrastructure and remains active as of July 18, 2026. Registration data shows the domain was created on March 25, 2023 through Endurance International Group India Private Limited, and it is hosted on nameservers rns29.webhostbox.net and rns30.webhostbox.net. DNS resolution points to the IPv4 address 162.241.85.245, which is served with a valid Let's Encrypt YR2 certificate. Threat intelligence sources indicate that the domain appears in five AlienVault OTX pulses and has been flagged by 15 of 91 security vendors on VirusTotal. These indicators suggest the domain is being used to host malicious phishing content, although the exact payload or targeted brand has not been disclosed in the available data. Defenders should block outbound connections to 162.241.85.245, monitor DNS queries for cwfpl.in, and add the domain to deny‑list policies across email gateways and web proxies. Continuous monitoring of OTX and VirusTotal updates is recommended to capture any new detections or changes in the domain's activity.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260718-3F6C40- Заголовок сохранённой страницы
- CWF || Home
Правовое основание
Полный текст доказательств
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (IN):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and IN's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | cwfpl.in |
malicious | Sinkholed |
| DNS4EU | cwfpl.in |
malicious | Sinkholed |
| Quad9 DNS | cwfpl.in |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Статус домена
Недоступен → Доступен
Технологии
Выявлено 8 технологий с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of cwfpl.in · checked Jul 18, 2026
Анализ конфигурации сайта
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание