xcvdt[.]pics
“xcvdt.pics”
证据摘要
xcvdt.pics is a newly registered domain observed in a generic_phishing campaign. The WHOIS record shows registration through Spaceship, Inc. on July 9, 2026, with authoritative name servers launch1.spaceship.net and launch2.spaceship.net. DNS resolution points exclusively to the IPv4 address 47.242.217.10, which remains active as of the report date. The domain is currently classified with a risk level of under_investigation and retains an active status. No additional infrastructure such as additional IPs, ASN information, or hosting details has been disclosed. The limited intelligence indicates that the domain is being used as part of a phishing operation, but the specific target brand, malicious payload, or phishing kit has not been publicly identified. Consequently, the scope of the campaign, including the volume of emails or the geographic distribution of victims, remains uncertain. Defenders should consider adding the domain and its resolving IP to blocklists, monitoring DNS queries for repeated lookups, and employing heuristic detection to capture potential phishing emails that reference this domain. Ongoing collection of passive DNS, sinkhole, and email telemetry is recommended to refine attribution and to determine whether additional infrastructure is linked to the campaign.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
域名情报
技术详情DNS、TLS 名称和时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
技术
识别出 2 项高置信度技术
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控