querulous-peach-4dtaevfs[.]edgeone[.]dev
“Mail”
querulous-peach-4dtaevfs.edgeone.dev — Непроверенный. Олицетворение бренда: Genericemail; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 21/91 (BitDefender, Cluster25, CRDF, Ermes, ESET); URLScan malicious verdict; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 95/100. Регистратор: Tencent Cloud.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain querulous-peach-4dtaevfs.edgeone.dev is currently active and has been classified as a generic phishing infrastructure. It resolves to the IPv4 address 43.174.247.29, which is the sole network endpoint associated with the observed activity. Registration data indicates the domain was provisioned through Tencent Cloud, a cloud service provider that often hosts short‑lived malicious sites. DNS resolution details are limited; the nameserver information is not available, suggesting either a rapid deployment strategy or deliberate obfuscation of the authoritative servers.
The domain has been added to two independent security blocklists and is explicitly listed by PhishDestroy and OpenPhish, reinforcing the consensus that it is being used for phishing. VirusTotal analysis shows that 19 of 91 scanned security vendors have flagged the domain as malicious, providing independent corroboration of the blocklist entries. While the available intelligence confirms the domain’s malicious intent, several aspects remain uncertain: the specific payload or credential‑harvesting page has not been publicly documented, the hosting ASN and geographic location of the IP are not disclosed, and no SSL certificate or HTTP response details have been observed.
Defenders should immediately block both the domain and its resolved IP at perimeter filters, DNS resolvers, and endpoint security solutions. Continuous monitoring for newly resolved IPs or similar sub‑domain patterns issued by the same registrar is advised, as the operators may rotate infrastructure rapidly. Inclusion of the domain in internal threat intelligence feeds will aid correlation with potential phishing attempts targeting users.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: edgeone.dev
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain edgeone.dev behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 1 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of querulous-peach-4dtaevfs.edgeone.dev · checked Aug 5, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание