link.qfsdigitalnetworkx.com
“Open protocol for connecting Wallets to Dapps”
The domain www.link.qfsdigitalnetworkx.com is currently active and classified as a high‑risk generic phishing site.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
证据摘要
The domain www.link.qfsdigitalnetworkx.com is currently active and classified as a high‑risk generic phishing site. Registration data shows the domain was created on 23 October 2025 and was registered through TuringSign Inc. d/b/a Cosmotown. Authoritative nameservers ns5.maskhosting.com and ns6.maskhosting.com resolve the domain to the IPv4 address 5.182.208.207.
The host IP is listed on a single security blocklist and the domain is blocked by PhishDestroy, indicating that at least one reputable anti‑phishing feed has identified it as malicious. VirusTotal analysis reports five detections out of ninety‑one scanned vendors, confirming that multiple security products have flagged the domain as suspicious. No additional telemetry such as SSL certificate details, HTTP response codes, Safe Browsing status, or page title information has been published, so the exact content and any impersonated brand remain unverified.
Defenders should immediately add www.link.qfsdigitalnetworkx.com to perimeter blocklists and DNS filtering policies, and consider blocking the associated IP address 5.182.208.207 to reduce exposure. Continuous monitoring of the host’s ASN and any future detection updates from threat‑intelligence feeds is advised, as the domain may evolve or spawn additional infrastructure. Organizations should also review email gateway logs for attempts to reference this domain and enforce user awareness training that emphasizes the risk of unknown links, especially those that appear in phishing‑related communications.
Forensic History & Detection Timeline
-
Threat First Observed Jul 27, 2026 · 09:31 UTCDomain ingestion complete. Initial state is marked as alive pointing to IP
5.182.208.207.
威胁响应 Pipeline
公共封禁名单状态
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
LiteSpeed
Scanner note: alive_content: raw=ok; http=200; via=https_proxy; server=LiteSpeed
技术 · 4 identified
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of link.qfsdigitalnetworkx.com · checked Jul 27, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。