register-slurmit[.]fun
“Error”
The domain register-slurmit.fun was registered on March 04, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and resolves to the Cloudflare address 104.21.1.127, ASN 13335, located in the United States. The authoritative name servers are porter.ns.cloudflare.com and priscilla.ns.cloudflare.com, indicating the use of Cloudflare’s DNS and CDN services. No TLS certificate was observed, so the site served HTTP without encryption. The only visible page title is "Error", and no additional content has been captured, leaving the exact phishing payload or targeted brand undefined.
The domain appears on three security blocklists and has been actively blocked by PhishDestroy, MetaMask, and SEAL, confirming that multiple threat‑intelligence providers have flagged it as malicious. VirusTotal analysis returned a single positive detection out of ninety‑five scanners, providing further independent corroboration of its malicious nature. Current monitoring shows the site is offline, but the infrastructure components remain in place and could be re‑activated.
Defenders should immediately add register‑slurmit.fun to DNS and proxy deny lists, enforce TLS inspection to capture any future traffic, and monitor Cloudflare IP ranges for similar activity. Continuous watch of the associated ASN and the registrar’s new registrations is advised to detect potential resurgence or related domains. Because the page content has not been harvested, analysts should treat any future re‑appearance as a potential phishing landing page and apply standard credential‑harvesting mitigations until the threat is fully characterized.
Запись отправленного сообщения
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260304-28915B- Заголовок сохранённой страницы
- Error
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (DE):
German Criminal Code § 263 (Fraud)
German Criminal Code § 263a (Computer Fraud)
Telemedia Act (TMG)
German law prohibits fraud and computer-based deception.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | register-slurmit.fun |
malicious | Sinkholed |
| DNS4EU | register-slurmit.fun |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
Источников: 10 · синхронизировано 09.08.2026
Хронология обнаружения
Сохранённые наблюдения в хронологическом порядке.
-
VirusTotal
VirusTotal: 0 → 1
-
Cloudflare Radar
Cloudflare Radar: впервые отмечено как https://radar.cloudflare.com/scan/52865264-e237-48b8-938b-4361dc531960
-
Сохранённое наблюдение
Сохранённое наблюдение: alive → dead
-
Cloudflare Radar
Cloudflare Radar: впервые отмечено как https://radar.cloudflare.com/scan/de06d7fc-2567-4868-85a0-44f54f1c69bd
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of register-slurmit.fun · checked Mar 4, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание