MALICIOUS — CRITICAL
Перевірка домену desenvendad.cfd на фішинг і безпеку
desenvendad[.]
This domain, desenvendad.cfd, was registered on June 25, 2026 through TuringSign Inc.
- VirusTotal
- 17/91
- Blocklists
- No stored match
- Доступність
- Контент недоступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
desenvendad.cfd — Контент недоступний (HTTP 502). Зведення доказів: VirusTotal 17/91 (alphaMountain.ai, BitDefender, Cluster25, CRDF, Forcepoint ThreatSeeker); URLQuery 4 alerts; Google Safe Browsing flagged; Spamhaus DBL_ABUSED_SPAM; CF Radar malicious; PhishDestroy score 98/100. Реєстратор: TuringSign.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
This domain, desenvendad.cfd, was registered on June 25, 2026 through TuringSign Inc. d/b/a Cosmotown and uses the authoritative name servers ndns1.cosmotown.com and ndns2.cosmotown.com. DNS resolution points to the IPv4 address 66.85.46.240, which is the sole host observed for the domain. The domain appears on two public phishing blocklists, PhishDestroy and OpenPhish, and Google Safe Browsing classifies it as a social‑engineering threat.
On VirusTotal the domain received detections from seven of ninety‑five scanning engines, confirming that multiple security vendors have identified malicious activity associated with it. The risk rating is high and the infrastructure remains active as of the report date, July 22, 2026. Analysis indicates that the domain is being used for a generic phishing campaign, but no additional artefacts such as page titles, SSL certificates, or HTTP response codes have been disclosed, leaving the exact payload and target brand undefined.
The limited visibility into the web content means defenders cannot rely on signature‑based blocking of specific page elements, and must instead focus on network‑level indicators. Recommended mitigation steps include adding 66.85.46.240 to deny‑list rules on perimeter firewalls and DNS filtering solutions, ensuring that the domain and its name‑server entries are blocked in corporate DNS resolvers, and monitoring for any outbound connections to the associated IP address. Security teams should also flag any email that references desenvendad.cfd for further investigation, and continue to watch for updates from the blocklist providers and VirusTotal for new detection signatures.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних13 recorded checks
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | desenvendad.cfd |
malicious | Sinkholed |
| Cloudflare DNS | desenvendad.cfd |
malicious | Sinkholed |
| OpenDNS | desenvendad.cfd |
phishing | Phishing Block |
| DNS4EU | desenvendad.cfd |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ЗОНА SHORTDOT · ПУБЛІЧНІ ДОКАЗИ
.cfd
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Перехресна перевірка даних про загрози · source references
Технології · 7 identified
Google Maps is a web mapping service. It offers satellite imagery, aerial photography, street maps, 360° interactive panoramic views of streets, real-time traffic conditions, and route planning for traveling by foot, car, bicycle and air, or public transportation.
maps.google.com 100% впевненостіBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% впевненостіApache is a free and open-source cross-platform web server software.
httpd.apache.org 100% впевненостіOWL Carousel is an enabled jQuery plugin that lets you create responsive carousel sliders.
owlcarousel2.github.io 100% впевненостіQuery Migrate is a javascript library that allows you to preserve the compatibility of your jQuery code developed for versions of jQuery older than 1.9.
github.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіPopper is a positioning engine, its purpose is to calculate the position of an element to make it possible to position it near a given reference element.
popper.js.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of desenvendad.cfd · checked Jul 22, 2026
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260722-A8150D Recipient: abuse@cosmotown.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.