paiementleboncoin[.]trxf[.]fr
“Valide – Service enregistrement”
paiementleboncoin.trxf.fr — Контент недоступний. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 19/91 (Criminal IP, BitDefender, Cluster25, CRDF, CyRadar); URLQuery 1 alert; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: IONOS SE.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of the domain paiementleboncoin.trxf.fr indicates an active high-risk phishing campaign targeting users through a credential-harvesting page. The domain was registered on June 4, 2026, via IONOS SE and currently resolves to the IP address 217.160.0.234. Infrastructure analysis reveals the use of four nameservers: ns1030.ui-dns.biz, ns1084.ui-dns.de, ns1111.ui-dns.com, and ns1120.ui-dns.org, which are consistent with hosting providers commonly exploited for phishing operations. The page title, 'Valide – Service enregistrement,' suggests an attempt to mimic a legitimate authentication or verification service, though the exact brand impersonation remains unconfirmed due to the absence of additional brand-specific indicators. As of July 19, 2026, the domain is flagged by 9 of 95 security vendors on VirusTotal and appears on at least one security blocklist, including PhishDestroy. The detection count, while not exhaustive, corroborates the classification of this domain as malicious. Defenders should prioritize blocking the domain and its resolving IP address (217.160.0.234) at the network level, as well as monitoring for related indicators of compromise, such as user reports of credential theft or unauthorized access attempts. The domain remains active, and further investigation into its hosting infrastructure may reveal additional linked phishing domains or command-and-control channels. No evidence currently links this campaign to a specific phishing kit or threat actor group.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | paiementleboncoin.trxf.fr |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 6 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% впевненостіApache is a free and open-source cross-platform web server software.
httpd.apache.org 100% впевненостіQuery Migrate is a javascript library that allows you to preserve the compatibility of your jQuery code developed for versions of jQuery older than 1.9.
github.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of paiementleboncoin.trxf.fr · checked Jul 19, 2026
Докази та зовнішні звіти
PD-20260719-E93DC9 Recipient: abuse@ionos.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога