MALICIOUS — CRITICAL
Перевірка домену banditcump.com на фішинг і безпеку
banditcump[.]
The domain banditcump.com was observed on July 12, 2026 delivering a generic phishing payload.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- Доступність
- Останній відомий активний · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
banditcump.com — Останній відомий активний (HTTP 200). Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 3/91 (alphaMountain.ai, CRDF, Gridinsoft); PhishDestroy score 71/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
The domain banditcump.com was observed on July 12, 2026 delivering a generic phishing payload. HTTP requests return a 200 status code while the page title reports “522: Connection timed out”, indicating a Cloudflare‑hosted front end that is actively refusing connections. The site is classified as high‑risk and remains active at the time of analysis. Infrastructure analysis shows the domain resolves to the IP address 172.67.191.76, which belongs to the AS13335 network operated by Cloudflare, Inc. The domain employs Cloudflare’s DNS services, using the authoritative nameservers alex.ns.cloudflare.com and khloe.ns.cloudflare.com. TLS termination is provided by a certificate issued by Google Trust Services under the WE1 root, confirming the use of industry‑standard encryption. The domain was registered on March 13, 2026 through NiceNIC International Group Co., Limited, a registrar that does not appear on any known abuse‑free list. Threat intelligence sources have flagged the domain on a single security blocklist and PhishDestroy has actively blocked it. The Gridinsoft trust score is 0 out of 100, reflecting a complete lack of trust. VirusTotal reports that 3 of 95 scanned security vendors have marked the domain as malicious, reinforcing the phishing designation. The combination of a fresh registration, low trust score, and multiple detections aligns with typical patterns of newly created phishing infrastructure. Uncertainty remains regarding the specific credential‑stealing page or target brand, as the site currently serves only a timeout page and no payload content could be captured. Defenders should add the IP 172.67.191.76 and the domain banditcump.com to outbound and inbound block lists, monitor DNS queries for the associated Cloudflare nameservers, and enforce URL filtering for all connections to the domain. Continuous re‑assessment is advised, given the active status and the possibility of future payload deployment.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:43:15 UTC
Технології · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of banditcump.com · checked Mar 28, 2026
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260313-C7966F Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.