The domain velomenius.digital was registered on 19 June 2026 through Global Domain Group LLC and resolved to the IPv4 address 193.187.110.3. The authoritative name servers listed are a.dnspod.com, b.dnspod.com and c.dnspod.com, indicating use of the DNSPod hosting platform. VirusTotal scans show that 2 of 91 security vendors flagged the domain, confirming that at least a minority of detection engines consider it malicious.
The domain is currently listed on a single external blocklist and is actively blocked by the PhishDestroy mitigation service, suggesting that threat‑intelligence feeds have identified it as a phishing‑related resource. No additional metadata such as SSL certificate details, HTTP response codes, page titles, or Safe Browsing verdicts are available in the supplied intelligence, leaving the exact content of the site unverified. The classification as a generic phishing campaign derives from the combination of the short registration age, the presence on a phishing‑specific blocklist, and the modest detection rate on VirusTotal.
Defenders should continue to deny any outbound connections to 193.187.110.3, enforce DNS filtering for velomenius.digital, and monitor the three DNSPod name servers for any rapid changes that could indicate a fast‑flux or domain‑generation technique. Because the domain remains active, security teams should add it to internal blocklists, correlate any user‑reported credential submissions with this indicator, and regularly review updates from PhishDestroy and other threat‑feed providers for potential escalation.