pasaremos[.]xyz
“!Pasaremos - форум свободного общения”
Сводка доказательств
On 24 July 2026 the domain pasaremos.xyz was observed as offline. The zone is registered through TLD Registrar Solutions Ltd. and was created on 30 December 2024. Authoritative nameservers alfred.ns.cloudflare.com and tegan.ns.cloudflare.com resolve the domain to the Cloudflare edge address 104.21.14.220, which is associated with AS13335 Cloudflare, Inc. in the United States. No TLS certificate is presented for the host, indicating that HTTPS is not configured. The only visible artifact is the page title “!Pasaremos - форум свободного общения”, which suggests a Russian‑language forum but does not provide evidence of a specific brand impersonation.
VirusTotal records show that two of ninety‑five scanning engines flagged the domain, and the domain appears on a single public blocklist. PhishDestroy has listed the site as blocked, and AlienVault OTX includes it in one threat pulse. Gridinsoft’s proprietary trust scoring assigns a score of zero out of one hundred, reinforcing the malicious assessment. The lack of a valid SSL certificate, combined with the low trust score and the presence on multiple security feeds, indicates a high likelihood that the site was used for generic phishing or malicious content delivery.
Because the site is currently offline, active containment is not possible, but defenders should continue to monitor the IP address 104.21.14.220 for any re‑use by other malicious actors, as Cloudflare IP space is frequently recycled. Network sensors and URL filtering solutions ought to retain the domain in block lists and incorporate the observed indicators of compromise. Threat intelligence teams should correlate any future traffic to the listed nameservers or the Cloudflare edge IP with existing phishing campaigns. Until the domain is definitively taken down, maintaining the current blocklist entry and sharing the indicators with peer organizations is recommended.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание