dofus-actualites[.]com
“MIRAGE FORGELANCIALE - Info - Actualités - DOFUS, le MMORPG stratégique.”
dofus-actualites.com — Непроверенный. Олицетворение бренда: Dofus; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 11/95 (Bfore.Ai PreCrime, BitDefender, CyRadar, Fortinet, G-Data); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 83/100. Регистратор: Hosting Concepts.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of www.dofus-actualites.com confirms active brand-impersonation phishing targeting Dofus, a strategic MMORPG. The domain was registered on December 16, 2025, through Hosting Concepts B.V. d/b/a Registrar.eu and currently resolves to 64.29.17.65, hosted on Amazon.com, Inc. infrastructure (AS16509) in the United States. The site returns an HTTP 200 status, indicating an operational frontend, though no SSL certificate is present. Nameservers point to ns1.vercel-dns.com and ns2.vercel-dns.com, suggesting Vercel-hosted infrastructure.
Detection evidence includes a page title explicitly referencing Dofus: 'MIRAGE FORGELANCIALE - Info - Actualités - DOFUS, le MMORPG stratégique.' This aligns with the confirmed scam type of brand impersonation. The domain appears on one security blocklist (PhishDestroy) and is flagged by 11 of 95 security vendors on VirusTotal. AlienVault OTX records the domain in 15 threat intelligence pulses, further corroborating malicious activity. Gridinsoft assigns a trust score of 0/100, reinforcing high-risk classification.
Defenders should prioritize blocking or sinkholing this domain at DNS and network levels. The absence of SSL and use of Vercel nameservers may serve as additional indicators for automated detection rules. Given the domain's persistence since late 2025 and its presence on multiple threat feeds, assume continued exploitation of Dofus branding for credential harvesting or malware distribution. No evidence currently links this domain to a specific phishing kit or broader campaign infrastructure beyond the provided indicators.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание