michi-bsc[.]next-cryptolist[.]net
“Suspected Misleading Website | Cloudflare”
michi-bsc.next-cryptolist.net — Непроверенный. Олицетворение бренда: Cloudflare; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 17/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); PhishDestroy score 95/100. Регистратор: Key-Systems.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, michi-bsc.next-cryptolist.net, is flagged as an active brand impersonation threat targeting Cloudflare. Registered on April 11, 2026, through Key-Systems GmbH, the domain resolves to the IP address 104.21.64.107, which is geolocated to Canada and associated with Cloudflare, Inc. infrastructure. The domain's nameservers (hunts.ns.cloudflare.com and nena.ns.cloudflare.com) further indicate reliance on Cloudflare's DNS services, a common tactic to evade basic detection. Analysis of the SSL certificate reveals issuance by Google Trust Services (WE1), a legitimate provider often exploited in phishing operations to lend false credibility. The page title, 'Suspected Misleading Website | Cloudflare,' explicitly aligns with the identified threat type—brand impersonation—suggesting an attempt to deceive users by mimicking Cloudflare's branding or services. As of July 12, 2026, the domain remains active, returning an HTTP 403 status, which may indicate restricted access or a placeholder state pending malicious deployment. Security vendors have flagged the domain, with 18 out of 94 engines on VirusTotal detecting it as malicious, and it appears on at least one security blocklist. The Gridinsoft trust score of 0/100 reinforces its classification as high-risk. While the exact content of the site has not been analyzed, the observable infrastructure and metadata confirm its association with phishing activity. Defenders should treat this domain as hostile, block it at the DNS and network levels, and monitor for related indicators of compromise. Given its active status and impersonation of a widely recognized brand, organizations are advised to prioritize mitigation to prevent potential credential theft or fraud.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: next-cryptolist.net
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain next-cryptolist.net behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of michi-bsc.next-cryptolist.net · checked Jun 26, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание