volume[.]finance
“Volume”
Сводка доказательств
Analysis indicates that the domain volume.finance is currently active and classified as a high‑risk brand‑impersonation site targeting Discord users. The site presents the page title “Volume” and is listed as a social‑media scam. No visual content has been examined, so the exact mimicry of Discord’s interface cannot be confirmed, but the presence of the brand target in the intelligence suggests an attempt to lure Discord account credentials. Infrastructure analysis reveals the domain resolves to IP 76.76.21.21, which belongs to Amazon.com, Inc. (AS16509) in the United States. Hosting appears to be on the Vercel platform, and HTTP requests return status 200. TLS is provided by a Let’s Encrypt R13 certificate, with HSTS enabled. DNS is served by dns1.registrar-servers.com and dns2.registrar-servers.com, and the registrar is NameCheap, Inc. The domain was created on 11 January 2021. MX records point to Google’s mail infrastructure (aspmx.l.google.com with priority 1 and alt1.as…). Keybase technology is also detected, indicating possible use of its verification services. Detection history shows the domain carries a Gridinsoft trust score of 0 / 100, is listed on one security blocklist, and has been blocked by PhishDestroy. VirusTotal reports a single positive detection out of 95 scanned vendors, confirming at least one security product has flagged the domain. The combination of a zero trust score, active blocklist entry, and high‑risk classification underscores the malicious intent of the infrastructure. Defenders should add volume.finance to outbound and inbound filtering rules, monitor DNS queries for the associated IP and nameservers, and enforce strict verification of any unsolicited Discord‑related communications. Continuous re‑scanning of the domain with multiple scanners is advised to capture any changes in detection status, and incident response teams should treat any credential submissions to this domain as compromised.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of volume.finance · checked Mar 2, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание