enzosolplay[.]com
Сохранённое обнаружение
Обнаружена маскировка
- Тип маскировки
status_split- Оценка маскировки
- 4/6
Сводка доказательств
Analysis indicates that enzosolplay.com is currently active and classified as a generic phishing site with a specific focus on crypto scams. The domain was created on November 16, 2025 and is hosted behind Cloudflare’s network, utilizing Cloudflare Browser Insights and HTTP/3. The page title returned by the server is "Just a moment..." and the HTTP response code is 403, suggesting that the site is restricting direct access to its content.
Infrastructure examination shows that the domain resolves to IP address 172.67.195.213, which belongs to AS13335 operated by Cloudflare, Inc., and is located in the United States. Nameservers listed are meilani.ns.cloudflare.com and zahir.ns.cloudflare.com, both associated with Cloudflare's DNS service. The TLS certificate is issued by Google Trust Services under the WE1 label, confirming the use of a valid, publicly trusted certificate chain.
Threat intelligence sources assign a high risk rating to this domain. The scam type is identified as a crypto scam, and the site appears on one security blocklist. VirusTotal reports three detections out of ninety‑five scanned vendors, and Gridinsoft assigns a trust score of 0 out of 100, reinforcing the malicious disposition. Additionally, PhishDestroy has already blocked the domain, indicating that other protective services have taken similar action.
Defenders should immediately block enzosolplay.com at the DNS and proxy layers to prevent user exposure. Continuous monitoring of the associated IP address and Cloudflare nameservers is advised, as the infrastructure could be leveraged for additional malicious domains. Updating intrusion detection signatures with the observed HTTP 403 response and the "Just a moment..." page title can improve detection accuracy. Organizations should also verify that endpoint protection tools reference the current VirusTotal detections and incorporate the low trust score into risk scoring models to prioritize remediation.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание