fundkiyan[.]com
“Fundacja Charytatywna «KYIAN»”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
fundkiyan.com was registered through NiceNIC International Group Co., Limited on 21 February 2026. The domain resolves to 188.114.96.3, an address owned by Cloudflare, Inc. (AS13335) and located in the United States. DNS resolution is handled by koa.ns.cloudflare.com and nena.ns.cloudflare.com, confirming the use of Cloudflare’s authoritative name‑service infrastructure. The site presents a TLS certificate issued by Google Trust Services under the WE1 trust profile, indicating a valid HTTPS endpoint. An HTTP request returns status code 521, which Cloudflare uses to signal that the origin server is refusing connections, a pattern often observed in malicious hosting configurations.
The page title returned by the server is “Fundacja Charytatywna «KYIAN»”, suggesting the site claims to represent a charitable foundation. No additional content has been publicly disclosed, and the visual or functional characteristics of the page remain unverified. Threat intelligence flags the domain as a generic phishing site; two of ninety‑five VirusTotal scanners have raised detections, and the domain appears on one external blocklist. PhishDestroy has already added the domain to its blocklist, indicating that at least one commercial anti‑phishing service considers it active. Infrastructure analysis shows the use of Cloudflare’s HTTP/3 protocol, which may be leveraged to bypass some legacy inspection tools.
The combination of a recent registration date, Cloudflare front‑end, and a short‑lived TLS certificate aligns with typical phishing deployment tactics. However, the lack of public payload samples and the ambiguous page title leave the exact phishing vector uncertain. Defenders should block or sinkhole 188.114.96.3 at the network perimeter, enforce DNS filtering for fundkiyan.com, and monitor for any traffic that attempts to establish TLS sessions with the Google‑issued certificate.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260214-0FA130- Заголовок сохранённой страницы
- Fundacja Charytatywna «KYIAN»
- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание