top-meme[.]fun
“Google”
Сводка доказательств
Analysis of top-meme.fun reveals infrastructure consistent with brand impersonation targeting Google, classified as elevated risk. The domain was registered on February 21, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with abusive registrations. It resolves to IP 172.67.184.153, hosted on Cloudflare's network (AS13335), a common proxy service used to obscure phishing origins. No SSL certificate is present, increasing the likelihood of interception or tampering during data transmission.
The page title 'Google' directly matches the targeted brand, reinforcing the impersonation intent. The domain appears on one security blocklist (PhishDestroy) and is flagged by 5 of 93 security vendors on VirusTotal, indicating detection by multiple independent engines. Nameservers (carlos.ns.cloudflare.com, lila.ns.cloudflare.com) further confirm Cloudflare's role in hosting the infrastructure. At the time of assessment, the domain is offline, though this status may change; defenders should treat it as compromised until verified otherwise.
While the exact content of the site remains unanalyzed, the combination of registration details, hosting provider, lack of encryption, and explicit brand targeting provides concrete evidence of phishing activity. Organizations should block the domain at the DNS level, monitor for re-emergence, and review logs for prior connections to 172.67.184.153 or related Cloudflare IPs. No evidence suggests the use of a phishing kit or additional payloads, but the infrastructure aligns with known impersonation tactics.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260217-B3CDFD- Заголовок сохранённой страницы
- Clavicular | Airdrop
- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Acceptable Use Policy (AUP): The domain top-meme.fun is being utilized for phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The ongoing use of this domain for deceptive practices directly contravenes your TOS, which reserves the right to suspend or terminate services for any violations.
Applicable Laws (DE):
Strafgesetzbuch (StGB) § 263 - Fraud: Engaging in phishing activities is classified as fraud under German law, subjecting the perpetrator to criminal penalties.
Telemediengesetz (TMG) § 7 - General Duty to Monitor: As a service provider, you have a legal obligation to prevent the dissemination of illegal content, including phishing schemes.
Gesetz über den unlauteren Wettbewerb (UWG) - Act Against Unfair Competition: Phishing practices violate this law by misleading consumers and harming fair competition.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liabilities and regulatory scrutiny. Compliance with applicable laws and your own policies is imperative to mitigate risks associated with domain abuse.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание