enlist-monad[.]app
“Nur einen Moment…”
证据摘要
The domain enlist-monad.app was registered on February 21, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com. DNS resolution points to the Cloudflare‑managed address 172.67.212.130, which belongs to AS13335 Cloudflare, Inc. and is hosted in the United States. The site presents a TLS certificate issued by Google Trust Services under the WE1 label, indicating a valid HTTPS endpoint. HTTP traffic is served over HTTP/3 and returns a 403 status code, suggesting that the server is actively denying access to the requesting client.
The page title observed during the brief scan was "Nur einen Moment…", a German phrase meaning "Just a moment…"; no further content was captured before the service was taken offline. VirusTotal analysis shows that 10 of 93 scanned security vendors flagged the domain as malicious, and the domain appears on a single external blocklist. PhishDestroy has also listed the domain as blocked. The domain’s primary malicious intent is identified as brand impersonation targeting the technology brand Monad.
The infrastructure utilizes Cloudflare’s edge network, which can obscure the true origin of the payload, and the nameservers are adam.ns.cloudflare.com and danica.ns.cloudflare.com. While the site is currently offline, the observed indicators suggest an active phishing campaign that may have been distributing malicious links or credential‑harvesting pages under the guise of Monad. Defenders should add the IP address 172.67.212.130 to network‑level deny lists, monitor for new domains resolving to the same Cloudflare edge nodes, and enforce URL filtering policies that block access to enlist-monad.app. Continuous threat‑intel feeds should be consulted for any re‑appearance of the domain or related indicators, and security teams should update endpoint protection signatures to reflect the 10 vendor detections reported by VirusTotal.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
检测时间线
已保存的截图
域名情报
技术详情DNS、TLS 名称和时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
技术
识别出 2 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of enlist-monad.app · checked Mar 2, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控