Güvenlik raporuna geç
⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 14. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@spaceship.com. The latest stored availability evidence still shows the domain reachable; 17 days has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
17 days
Reports sent
1
Latest case ID
PD-20260728-A113F7
Current status
Observed active at latest stored check
Etki alanı güvenliği ve tehdit istihbaratı

cvdf34dd[.]christmas

“cvdf34dd.christmas”

Tehdit kararı Kritik 92/100 kanıt puanı
Kullanılabilirlik Doğrulanmamış Mevcut erişilebilirlik doğrulanmadı
VirusTotal algılamaları: 14/91 Marka kimliğine bürünme: Google Genç alan adı: 21 günlük
28.07.2026 Google 1 Report Sent
Rapor özeti

cvdf34dd.christmas — Doğrulanmamış. Marka kimliğine bürünme: Google; Dolandırıcılık türü: Impersonation. Kanıt özeti: VirusTotal 14/91 (alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 92/100. Kayıt kuruluşu: Spaceship.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Kanıt özeti
KRİTİK
Ref
0D0D3A97
Puan
92/100

The domain cvdf34dd.christmas was registered on July 23, 2026 through Spaceship, Inc. and is currently resolved to the IPv4 address 47.242.217.10. Authoritative name servers for the zone are launch1.spaceship.net and launch2.spaceship.net, indicating that the registrar’s default DNS infrastructure is being used. The domain remains active as of the report date (July 28, 2026) and has been listed on a single security blocklist.

Independent analysis on VirusTotal shows that seven of ninety‑one antivirus and URL‑reputation engines have flagged the domain as malicious, reinforcing the suspicion that it is being leveraged for phishing. The blocklist entry is also reflected in the PhishDestroy feed, which has already taken the domain offline in its own filtering layer. No public TLS certificate details, HTTP response codes, or page‑title information are available, and the site has not been indexed by Google Safe Browsing or recorded in the Open Threat Exchange, leaving the exact content and target brand of the phishing campaign unknown.

The limited detection footprint—seven vendor alerts and a single blocklist entry—suggests that the infrastructure is either newly deployed or intentionally low‑profile, but the presence of multiple security‑vendor detections indicates that the domain is being used for malicious credential‑harvesting activity. Defenders should add cvdf34dd.christmas to local deny lists, monitor DNS queries for the 47.242.217.10 address, and ensure that any outbound traffic to the domain is blocked at perimeter firewalls. Continuous re‑evaluation is advised, as additional detections or content analysis may emerge as the campaign matures.

VirusTotal
VirusTotal
14 det.
CF Radarı
Zararlı
URLScan
URLScan
Yaş
21d Very New!
Gözlemlenen durum
Doğrulanmamış
PhishDestroy
DestroyList
Listede
Reports Sent
1
Veri kapsamı VirusTotal 14 / 91 URLQuery source data unavailable PhishStats kontrol edilmedi OTX no community references CF Radarı provider verdict: malicious URLScan capture saklanan rapor URLScan verdict malicious DNS engellemeleri kontrol edilmedi TLS sertifika verisi yok WHOIS 21d old Ekran görüntüsü 2 captures · 2 sources Yönlendirme zinciri araştırılmadı
Ağ Güvenliği İstihbaratı
CF Cloudflare Radar Verdict Zararlı
Dga domains Security threats Security Risks DGA Domains New Domains
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer:

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Kullanılabilirlik
12/13
Sent Report Recorded
Stored sent-report record for registrar Spaceship, Inc., hosting provider, 1 abuse contact
abuse@spaceship.com
28.07.2026

Genel Engelleme Listesi Durumu

Kaydedilen görüntü

Sayfa başlığı
cvdf34dd.christmas

Etki Alanı Analizi

Alan adı
URLScan Verdict Zararlı score 100 Phishing report ↗
Sunucu / ASN nginx · AS45102 Alibaba (US) Technology Co., Ltd.
IP itibarı abuse score 0/100 0 reports checked 28.07.2026
Kayıt kuruluşu Spaceship US(US)
IP adresi 47.242.217.10 HK
Coğrafi konumHK Hong Kong, HK
AS45102 · Alibaba (US) Technology Co., Ltd.
KayıtOluşturuldu 23.07.2026 (21d · Very New!) Expires 23.07.2027
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi28.07.2026
DOM Analysisanalyzed 28.07.2026score 88/100
IoC Extractionscanned 29.07.20260 wallet · 0 Telegram IoCs
Submitted URLhttp://cvdf34dd.christmas/
Ad sunucularılaunch1.spaceship.netlaunch2.spaceship.net
TLS Observationscanned 14.08.2026
Case ID
ICANN OVERSIGHT

Akreditasyon ve RAA bağlamı

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Hiçbir şey otomatik olarak gönderilmez.
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

14 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed Previous stored snapshot: 7 detections
alphaMountain.ai
BitDefender
CRDF
CyRadar
ESET
Fortinet
G-Data
Gridinsoft
Kaspersky
LevelBlue
Lionic
SOCRadar
Sophos
VIPRE

Kanıtlar ve Dış Raporlar

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260728-A113F7 Recipient: abuse@spaceship.com
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 865.9 KB

Bu Siteden Etkilendiniz mi?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin

Herhangi Bir Alan Adını Kontrol Et

Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi

Şimdi Tara

Oltalama Olayını Bildir

Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun

Bildir

Canlı Tehdit Akışı

Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri

İzle

Gelişmelerden Haberdar Olun, Güvende Kalın

Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin

Canlı Tehdit Akışı Bu İlanı İtiraz Et
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/cvdf34dd.christmas"
  title="PhishDestroy threat report for cvdf34dd.christmas"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Çok İçten Bir Teşekkür Mektubu

Hicivli taslak oluşturucu

Alıcı
Ücret bağlamı

Hicivli taslak. Ücret rakamları tahminidir; bu alan adına kesin olarak atfedildikleri iddia edilmez.