dmvca[.]gov-coew[.]cc
dmvca.gov-coew.cc — Неперевірений. Зведення доказів: VirusTotal 13/91 (BitDefender, CRDF, CyRadar, ESET, Forcepoint ThreatSeeker); Spamhaus DBL_PHISH; PhishDestroy score 89/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain dmvca.gov-coew.cc was registered on 12 June 2026 through Gname.com Pte. Ltd., a Singapore‑based registrar that appears in other malicious registrations, and has been observed in active phishing infrastructure as of the report date, 29 July 2026. Early detection by PhishDestroy placed the domain on a security blocklist; this is the sole open‑source blocklist entry identified. VirusTotal scans show that 13 of 91 anti‑malware engines flagged the domain, indicating a moderate level of consensus among scanners that the site is malicious. The domain’s risk level is classified as elevated and its operational status is listed as active.
No public WHOIS records reveal additional hosting details, and no SSL certificate information, HTTP response codes, or page‑title metadata have been published in the current intelligence set. Consequently, the precise content hosted on the site, the targeted brand, and the phishing kit employed remain unknown. The absence of these data points limits attribution but does not diminish the threat posed by the domain, given its inclusion on a reputable blocklist and the multiple vendor detections.
Defenders should add dmvca.gov-coew.cc to URL filtering and endpoint protection policies, enforce block‑list rules that include the domain, and monitor for any outbound connections to the associated IP space once it becomes resolvable. Network traffic logs should be inspected for DNS queries to the domain, and any login attempts that reference the domain should be treated as compromised. Threat‑intel platforms should be queried periodically for new detections, and any future VirusTotal re‑scans should be reviewed for changes in detection ratio. Continuous re‑evaluation is advised, as further analysis may reveal hosting infrastructure, SSL fingerprints, or page content that could refine mitigation actions.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога