dpd[.]kpmxqvt[.]cfd
“dpd.kpmxqvt.cfd”
Зведення доказів
This domain, dpd.kpmxqvt.cfd, is identified as a high-risk phishing site designed to impersonate DPD, a legitimate parcel delivery service. The site employs social engineering tactics to trick users into divulging sensitive information, such as login credentials, payment details, or personal data, under the pretense of resolving delivery issues or tracking packages. The fraudulent nature of the domain is evident from its deceptive branding and the use of urgency-driven messaging, a common tactic in phishing campaigns targeting logistics and e-commerce sectors.
Analysis of the domain reveals multiple indicators of malicious activity. The domain was registered on May 29, 2026, through Aceville Pte. Ltd., a registrar frequently associated with suspicious registrations. It resolves to the IP address 172.67.146.142 and leverages Cloudflare’s infrastructure, including HTTP/3, to obfuscate its true origin and evade detection. Security engines have flagged the domain as malicious, with 13 out of 95 vendors on VirusTotal detecting it as phishing-related. Additionally, the domain appears on one security blocklist and has been categorized under Google Safe Browsing’s SOCIAL_ENGINEERING classification. The page title, which matches the domain name, further suggests a lack of legitimate branding or content.
Users who have visited dpd.kpmxqvt.cfd or interacted with its content should take immediate remedial actions. First, any credentials or payment information entered on the site must be considered compromised and should be changed immediately across all platforms where they were reused. Affected users should also monitor their financial accounts for unauthorized transactions and report any suspicious activity to their financial institutions. If the site was accessed on a corporate or shared device, IT security teams should be notified to conduct a forensic analysis and mitigate potential risks. Finally, users are advised to verify the legitimacy of any delivery-related communications by contacting the official DPD channels directly, rather than relying on links or contact details provided in unsolicited messages.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260531-E1AD83- Заголовок збереженої сторінки
- dpd.kpmxqvt.cfd/com/
- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Section 3.1 of AUP: The domain dpd.kpmxqvt.cfd is engaged in phishing activities, which are explicitly prohibited under your Acceptable Use Policy.
Section 5.2 of TOS: The use of this domain for fraudulent purposes constitutes a violation of your Terms of Service, granting you the right to suspend or terminate services.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and the use of fraudulent schemes, including phishing.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, which applies to phishing activities.
Anti-Phishing Consumer Protection Act: This act aims to combat phishing and other deceptive practices targeting consumers, making it illegal to engage in such activities.
Regulatory Note: Failure to take immediate action against this domain may result in liability under applicable laws and could expose your organization to regulatory scrutiny. It is imperative to act swiftly to mitigate potential risks.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ЗОНА SHORTDOT · ПУБЛІЧНІ ДОКАЗИ
.cfd
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Registration: kpmxqvt.cfd
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain kpmxqvt.cfd behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 2 технології з високою впевненістю
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога