flarefdn-drop[.]live
Сводка доказательств
Analysis indicates that flarefdn-drop.live was registered on July 16 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and is currently pointing to the IP address 104.21.21.81, which is hosted by Cloudflare as evidenced by the authoritative nameservers kipp.ns.cloudflare.com and nola.ns.cloudflare.com. The domain appears on a single security blocklist and is actively listed by PhishDestroy, confirming that it has been observed in phishing‑related activity. VirusTotal has processed the domain with 95 scanning engines, none of which returned a detection at the time of review; this absence of alerts does not constitute evidence of benign intent. The short lifespan of the domain, combined with its recent creation date and immediate inclusion on a blocklist, suggests a purpose‑built infrastructure for credential harvesting or other malicious redirection. No public page title, brand target, or malicious payload details are available, leaving the exact impersonation tactic undefined. Defenders should add flarefdn-drop.live to outbound and inbound filtering rules, ensure DNS resolvers block the domain, and consider monitoring the associated IP for anomalous traffic patterns. Continuous re‑evaluation is advised, as further analysis of the web content or subsequent detections could reveal additional indicators of compromise.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260720-DAE85E
Правовое основание
Полный текст доказательств
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
8 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено 2 технологии с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of flarefdn-drop.live · checked Jul 20, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание