dpd[.]kpmxqvt[.]cfd
“dpd.kpmxqvt.cfd”
Kanıt özeti
This domain, dpd.kpmxqvt.cfd, is identified as a high-risk phishing site designed to impersonate DPD, a legitimate parcel delivery service. The site employs social engineering tactics to trick users into divulging sensitive information, such as login credentials, payment details, or personal data, under the pretense of resolving delivery issues or tracking packages. The fraudulent nature of the domain is evident from its deceptive branding and the use of urgency-driven messaging, a common tactic in phishing campaigns targeting logistics and e-commerce sectors.
Analysis of the domain reveals multiple indicators of malicious activity. The domain was registered on May 29, 2026, through Aceville Pte. Ltd., a registrar frequently associated with suspicious registrations. It resolves to the IP address 172.67.146.142 and leverages Cloudflare’s infrastructure, including HTTP/3, to obfuscate its true origin and evade detection. Security engines have flagged the domain as malicious, with 13 out of 95 vendors on VirusTotal detecting it as phishing-related. Additionally, the domain appears on one security blocklist and has been categorized under Google Safe Browsing’s SOCIAL_ENGINEERING classification. The page title, which matches the domain name, further suggests a lack of legitimate branding or content.
Users who have visited dpd.kpmxqvt.cfd or interacted with its content should take immediate remedial actions. First, any credentials or payment information entered on the site must be considered compromised and should be changed immediately across all platforms where they were reused. Affected users should also monitor their financial accounts for unauthorized transactions and report any suspicious activity to their financial institutions. If the site was accessed on a corporate or shared device, IT security teams should be notified to conduct a forensic analysis and mitigate potential risks. Finally, users are advised to verify the legitimacy of any delivery-related communications by contacting the official DPD channels directly, rather than relying on links or contact details provided in unsolicited messages.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260531-E1AD83- Yakalanan sayfa başlığı
- dpd.kpmxqvt.cfd/com/
- PDF belgesi
- PDF kanıtı
Hukuki dayanak
Kanıtın tam metni
Section 3.1 of AUP: The domain dpd.kpmxqvt.cfd is engaged in phishing activities, which are explicitly prohibited under your Acceptable Use Policy.
Section 5.2 of TOS: The use of this domain for fraudulent purposes constitutes a violation of your Terms of Service, granting you the right to suspend or terminate services.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and the use of fraudulent schemes, including phishing.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, which applies to phishing activities.
Anti-Phishing Consumer Protection Act: This act aims to combat phishing and other deceptive practices targeting consumers, making it illegal to engage in such activities.
Regulatory Note: Failure to take immediate action against this domain may result in liability under applicable laws and could expose your organization to regulatory scrutiny. It is imperative to act swiftly to mitigate potential risks.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
SHORTDOT BÖLGESİ · KAMUYA AÇIK KANIT
.cfd
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Registration: kpmxqvt.cfd
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For the registrable domain kpmxqvt.cfd behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
2 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin