Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 20 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
shop-dofus[.]fr
“Potion Valdermax - Actualites - Unity - le Unity stratégique.”
Зведення доказів
shop-dofus.fr is currently listed as an active generic phishing site with an elevated risk rating. The domain has been blocked by the PhishDestroy sinkhole, indicating that traffic to the domain is being redirected or denied by that mitigation service. In the AlienVault Open Threat Exchange the domain appears in fifty distinct threat‑intelligence pulses, reflecting repeated observations across multiple contributors. It is also present on a single external security blocklist, further confirming that at least one independent feed has classified it as malicious.
VirusTotal analysis shows that seventeen out of ninety‑one scanned security vendors returned a malicious verdict for the domain, providing concrete vendor consensus that the site hosts phishing content. The exact payload or lure employed by the site has not been publicly disclosed; page title and content analysis have not been released, so the specific brand or service being spoofed remains unknown. No additional infrastructure details such as registrar, hosting IP, ASN, or SSL certificate information are available in the current intelligence set. Consequently, defenders should treat any communication that references shop‑dofus.fr as potentially malicious, enforce URL filtering based on the domain, and incorporate it into existing phishing detection rules.
Continuous monitoring of threat‑intel feeds for updates on hosting details or observed payloads is advised, as further evidence may emerge that clarifies the phishing technique or target brand. Organizations employing email gateways or web proxies should block outbound connections to the domain and consider quarantine of any messages containing links to it. Incident response teams should also reference the existing PhishDestroy block and the AlienVault OTX pulses when correlating internal alerts, ensuring that detection mechanisms are aligned with the observed 17‑vendor malicious rating.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-1784898044-shop-dofus.fr- PDF-файл
- PDF із доказами
Історія повідомлень 1
- Повідомлення № 2 ⚠️ ESCALATION #2 (862h active): Phishing - shop-dofus[.]fr
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 13.08.2026
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога