cxvdf345f[.]shop
“首页”
cxvdf345f.shop — Неперевірений. Уособлення бренду: Generic; Тип шахрайства: Impersonation. Зведення доказів: VirusTotal 11/91 (alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 83/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of the domain cxvdf345f.shop as of July 28, 2026 confirms that it is an active phishing infrastructure. The authoritative name servers listed for the zone are launch1.spaceship.net and launch2.spaceship.net, and DNS resolution consistently returns the IPv4 address 47.242.217.10. The domain is currently listed on a single security blocklist and has been explicitly blocked by the PhishDestroy feed, indicating that at least one reputable anti‑phishing service has identified it as malicious.
VirusTotal reports that one out of ninety‑one scanned scanners flagged the domain, providing independent confirmation of its illicit nature despite the low detection ratio. No additional public intelligence such as page titles, SSL certificates, HTTP response codes, or brand‑specific lures has been published, so the exact content and victim‑targeting strategy remain unknown. Nevertheless, the convergence of DNS evidence, blocklist inclusion, and the VirusTotal detection is sufficient to classify the domain as a high‑risk phishing site.
Defenders should immediately block cxvdf345f.shop at perimeter filters, update DNS sinkhole configurations to redirect queries to a safe response, and consider adding the associated IP address 47.242.217.10 to network‑wide deny lists. Continuous monitoring of the name servers and periodic rescans with VirusTotal or similar services are recommended to capture any changes in the payload or additional vendor detections. Organizations that rely on email or web gateway controls should ensure that their URL filtering rules reference the current blocklist entries to prevent end‑user exposure.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога